Penetration Testing mailing list archives

RE: RealPlayer ierpplug.dll ActiveX Control BO (CVE-2007-5601) Exploit video


From: "Debasis Mohanty" <debasis.mohanty.listmails () gmail com>
Date: Tue, 4 Nov 2008 08:59:49 +0530

Thanks for passing on! Looks like a DOS poc. 

-d

-----Original Message-----
From: Augusto Augusto [mailto:aepereyra () gmail com] 
Sent: 04 November 2008 07:29
To: Debasis Mohanty; pen-test () securityfocus com
Subject: Re: RealPlayer ierpplug.dll ActiveX Control BO (CVE-2007-5601)
Exploit video

The exploit for this vulnerability is public

You can download from this link:

http://www.sebug.net/exploit/2611/


i don't test it

Enjoy

On Mon, Nov 3, 2008 at 4:01 PM, Debasis Mohanty
<debasis.mohanty.listmails () gmail com> wrote:
Although can't release the exploit code for obvious reasons but thought of
putting a video will be a good thing.

Check for a bindshell exploit demo for RealPlayer ierpplug.dll ActiveX
Control BO (CVE-2007-5601) vulnerability:
http://coffeeandsecurity.com/resources.aspx




-d


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------




------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Current thread: