.:[ packet storm ]:.
                         
security in numbers
security in numbers

 ///  File Name:notepadpoc.zip
Description:
The MS HTML Help control activex is prone to a remote CHM help file hijack vulnerability when applications invoke help. Multiple built-in applications are vulnerable to this. The impact of the vulnerability is the loading of the incorrect CHM help file when it resides in the same directory the application invoking help starts in. This proof of concept exploit leverages Notepad to demonstrate the vulnerability.
Author:Eduardo Prado
Homepage:http://secumania.net/index.php?option=com_content&task=view&id=37&Itemid=1
File Size:28918
Last Modified:Mar 10 10:51:10 2010
MD5 Checksum:3f0edb83fb8c525b3c7a93556ab16cc7

 .:. Back