[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Message-ID: <CAAnPYQ7U9hFMLDtPiVMMe=cxnh6hMp7yCj=mKLEhgasicVYdSA@mail.gmail.com>
Date: Wed, 30 Apr 2014 23:09:21 +0200
From: Gynvael Coldwind <gynvael@...dwind.pl>
To: Stefan Kanthak <stefan.kanthak@...go.de>
Cc: fulldisclosure <fulldisclosure@...lists.org>, bugtraq@...urityfocus.com
Subject: Re: [FD] Beginners error: iTunes for Windows runs rogue program
C:\Program.exe when opening associated files
Well spotted.
That said, don't you have to be an admin to be able to create files in
these directories anyway?
So this is only exploitable on FAT, or by admin, or if the ACLs are
set incorrectly right?
--
Gynvael Coldwind
_______________________________________________
Sent through the Full Disclosure mailing list
http://nmap.org/mailman/listinfo/fulldisclosure
Web Archives & RSS: http://seclists.org/fulldisclosure/
Powered by blists - more mailing lists