| IE 0Day "Print Table of Links" 4 hours ago by CK According from 009, this IE Zero-Day was found from Israeli. This kind of attacked triggered when users IE execute "Print Table of Links" and it called as ( Cross-Zone Scripting). Save the script below as html code, and open with Microsoft IE. Choose for printing and it will trigger calc.exe program ... Web Security Weblog - web2secure.com |
| 以色列人发现的IE 0day 18 hours ago by daxigua By: 009 测试成功,会运行计算器 只是利用起来有点 … … 这个漏洞是由于微软IE浏览器启动“Print Table of Links”时引起的跨站攻击(Cross-Zone Scripting ) 如果启用了 “Print Table of Links”,在打印一个网页的时候,能够导致执行任意代码。 1.选择“Print Table of Links”选项 2.把保存以下代码为HTML格式,用IE打开,并打印,会执行calc.exe。 Print me with table of links to execute calc.exe 大西瓜的杂货铺 - daxigua.com · Rank: 123,656 · 3 references |