Tuesday, April 1, 2008

Real Player rmoc3260.dll ActiveX Control Remote Code Execution Exploit

written by e.b.

Tested on Windows XP SP2(fully patched) English, IE6, rmoc3260.dll version 6.0.10.45

Thanks to h.d.m. and the Metasploit crew

----------------------------------

http://www.milw0rm.com/exploits/5332

Exploit contains two shellcode functions.

The default function launches calc.exe, but the other binds a shell on port 4444.

Hence the thanks to the Metasploit crew.

Does anyone know if that rmoc3260.dll v6.0.10.45 is from an older unpatched version of Real Player or from the new version just released?

No comments:

Post a Comment