Re: Microsoft Internet Explorer "javaprxy.dll" Code Execution Exploit
berendjanwever_at_gmail.com
Date: 07/06/05
- Previous message: Stefan Esser: "Advisory 07/2005: Jaws Multiple Remote Code Execution Vulnerabilities"
- Maybe in reply to: team_at_frsirt.com: "Microsoft Internet Explorer "javaprxy.dll" Code Execution Exploit"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 5 Jul 2005 22:21:40 -0000 To: bugtraq@securityfocus.com('binary' encoding is not supported, stored as-is) Thanks you all for notifying the frsirt team of their credit/copyright missteps, they seem to have corrected this on their website. I would like to request any exploit archive to reflect their changes and warn any developers that the code is under GPL and any work based on it will therefore also be under GPL.
On a side note, www.milw0rm.com has the HTML output of the exploit (the perl script has no other function then to make it look less like they ripped off my code).
The exploit is nothing more then a combination of the core of my Internet Exploiter script and the origional PoC. The frsirt team does not seem to have done a lot of research on the vuln or any fine-tuning on the script. It's pretty pathetic actually... but since I will not release Internet Exploiter 5 myself, you guys will have to make do with this ;)
Cheers,
SkyLined
http://www.edup.tudelft.nl/~bjwever
- Previous message: Stefan Esser: "Advisory 07/2005: Jaws Multiple Remote Code Execution Vulnerabilities"
- Maybe in reply to: team_at_frsirt.com: "Microsoft Internet Explorer "javaprxy.dll" Code Execution Exploit"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]