Nytro Posted July 21, 2015 Report Posted July 21, 2015 [h=1]Microsoft Word Local Machine Zone Remote Code Execution Vulnerability[/h]Exploit Title: Microsoft Word Local Machine Zone Remote Code Execution VulnerabilityDate: July 15th, 2015Exploit Author: Eduardo Braun PradoVendor Homepage : Microsoft – Pagina de pornire oficial?Version: 2007Tested on: Microsoft Windows XP, 2003, Vista, 2008, 7, 8, 8.1CVE: CVE-2015-0097Original Advisory: https://technet.microsoft.com/library/security/ms15-022Microsoft Word, Excel and Powerpoint 2007 contains a remote code execution vulnerability because it is possible to reference documents such as Works document (.wps) as HTML. It will process HTML and script code in the context of the local machine zone of Internet Explorer which leads to arbitrary code execution. By persuading users into opening eg. specially crafted .WPS, ".doc ", ".RTF " (with a space at the end) it is possible to triggerthe vulnerability and run arbitrary code in the context of the logged on Windows user.Exploit code here :https://onedrive.live.com/embed?cid=412A36B6D0A9436A&resid=412A36B6D0A9436A%21156&authkey=AA_JVoZcoM5kvOchttps://github.com/offensive-security/exploit-database-bin-sploits/raw/master/sploits/37657.zipSursa: https://www.exploit-db.com/exploits/37657/ 1 Quote
AlStar Posted July 21, 2015 Report Posted July 21, 2015 Chiar azi am intrat pe exploit-db si mi-au ajuns rapid ochii pe asta. As fi aruncat o privire la exploit in sine, dar cand am vazut ca linkul de github duce la o arhiva, mi-a disparut cheful. Quote
xiaowai Posted July 22, 2015 Report Posted July 22, 2015 this poc has some problems,i have changed it and put it on my blog.Microsoft Word??????CVE-2015-0097POC???you can follow my wechat. 1 Quote
luca123 Posted July 26, 2015 Report Posted July 26, 2015 (edited) Infesteaza si online @Nytro Edited July 28, 2015 by luca123 1 Quote