lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <039c01c4ec66$f2b67680$6702a8c0@AlanPickel.com> From: Mike at MichaelEvanchik.com (Michael Evanchik) Subject: BUG FIX Remote compromise of Internet Explorer Service Pack 2 XP SP2 Had a mistake in my code o well. Works now PoC: http://www.michaelevanchik.com/security/microsoft/ie/xss/index.html http://www.michaelevanchik.com/security/microsoft/ie/xss/writehta.txt <-- avp's should add this Here is some new adodb code AVP's should add. No longer needed to connect to external source. Malicious recordset can be built locally. www.michaelevanchik.com -------------- next part -------------- An HTML attachment was scrubbed... URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20041227/6ebd9fad/attachment.html