Thursday, December 11, 2008

Metasploit Module - Microsoft IE XML Handling Code Execution

http://trac.metasploit.com/browser/framework3/trunk/modules/exploits/windows/browser/ie_xml_corruption.rb?rev=6012

Exploit module (universal) for the new internet explorer xml bug . This module shows off the .NET memory techniques discovered by Alexander Sotirov and Mark Dowd. This code should bypass DEP, ASLR, and NX :-)

-------------------------------

This is a universal exploit for the new IE7 XML Zeroday.

No comments:

Post a Comment