• XSS.stack #1 – первый литературный журнал от юзеров форума

Windows 10 ms-officecmd: URI web drive-by RCE and other bugs

no1

Floppa
Пользователь
Регистрация
19.08.2019
Сообщения
93
Реакции
81
Гарант сделки
1
Hello, have you heard about this report ?

There is no CVE attached to it but it was released a few days ago. I think the log4j hype has caused people to look elsewhere.
There are some RCE tricks and a cool phishing technique, I'll let you read the paper.

tried to replicate some of the tricks, some things are already fixed, some are not. I'm also interested in what you think.

Sorry for the non-Russian post. I waited for someone to post to read the threads on the topic but nothing came out so I'm posting.
Also I was wondering if this is the good section, or if I better post it into exploitation section so, I apologize if I got it wrong.

have a nice day guys, cheer
 


Напишите ответ...
  • Вставить:
Прикрепить файлы
Верх