-
-
[转帖]cve-2013-3918
-
发表于: 2013-12-31 15:11 2693
-
CVE-2013-3918是由于Internet Explorer 7, 8, 9, 10的ActiveX控件中存在内存访问错误,攻击者可利用此漏洞在当前登录用户上下文中执行任意代码。
漏洞来源细节:
样本来源:http://www.secniu.com/blog/cve-2013-3918-exploit-analysis/
漏洞细节:http://technet.microsoft.com/en-us/security/bulletin/ms13-090
利用样本:http://jsunpack.jeek.org/?report=0fe86b1a6fc27dbd4134d96e68b9153682cc6831
漏洞相关环境:
操作系统:
Windows XP Service Pack 3
Windows XP Professional x64 Edition Service Pack 2
Windows Server 2003 Service Pack 2
Windows Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with SP2 for Itanium-based Systems
Windows Vista Service Pack 2
Windows Vista x64 Edition Service Pack 2
Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 for Itanium-based Systems Service Pack 2
Windows 7 for 32-bit Systems Service Pack 1
Windows 7 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
浏览器:
IE 7, 8, 9, and 10.
貌似很强大,我找不到适用的ROP,有高手整理一下
漏洞来源细节:
样本来源:http://www.secniu.com/blog/cve-2013-3918-exploit-analysis/
漏洞细节:http://technet.microsoft.com/en-us/security/bulletin/ms13-090
利用样本:http://jsunpack.jeek.org/?report=0fe86b1a6fc27dbd4134d96e68b9153682cc6831
漏洞相关环境:
操作系统:
Windows XP Service Pack 3
Windows XP Professional x64 Edition Service Pack 2
Windows Server 2003 Service Pack 2
Windows Server 2003 x64 Edition Service Pack 2
Windows Server 2003 with SP2 for Itanium-based Systems
Windows Vista Service Pack 2
Windows Vista x64 Edition Service Pack 2
Windows Server 2008 for 32-bit Systems Service Pack 2
Windows Server 2008 for x64-based Systems Service Pack 2
Windows Server 2008 for Itanium-based Systems Service Pack 2
Windows 7 for 32-bit Systems Service Pack 1
Windows 7 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for x64-based Systems Service Pack 1
Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
浏览器:
IE 7, 8, 9, and 10.
貌似很强大,我找不到适用的ROP,有高手整理一下
[招生]科锐逆向工程师培训(2024年11月15日实地,远程教学同时开班, 第51期)
赞赏
谁下载
winndy
HappyKL
网络游侠
luohb
ToNS
Sportsboy
lizhenhuan
清新阳光
reversing
没有姓名
qweSDFcvb
liudahai
karpenter
hnzzdkp
bestshow
lhao
accessd
carlshen
肯特awp
Vsbat
阳光code
white、、
dost
凭凡
hai海豚
jacktang
天下皆白
dswang
lastnoname
西川
菠萝蜜
rowp
宝宝的xql
sjsme
户大
olderlong
squallqz
goabout
yisuoyanyu
shidafuvxv
counsellor
LeavesBNW
火星farmer
qhacker
codlit
lynudt
mengjiangs
double飞
neilma
tpol
优化大师
沉默堡垒
xiaoaabc
qweasdasde
暗香沉浮
谁下载
winndy
millennium
BebEtter
HappyKL
lingyu
网络游侠
slavelord
Sportsboy
lizhenhuan
jxpjs
清新阳光
reversing
qweSDFcvb
supermilg
jingetiema
karpenter
hnzzdkp
bestshow
lhao
xiaolongo
iloveqqp
carlshen
肯特awp
artake
阳光code
fanliqwe
white、、
dost
凭凡
hai海豚
jacktang
魔造师
天下皆白
dswang
lastnoname
西川
宝宝的xql
sjsme
rekken
户大
olderlong
squallqz
goabout
yisuoyanyu
shidafuvxv
counsellor
msnhh
LeavesBNW
火星farmer
qhacker
codlit
lynudt
mengjiangs
double飞
tpol
优化大师
沉默堡垒
xiaoaabc
qweasdasde
暗香沉浮
看原图
赞赏
雪币:
留言: