Inside Security GmbH
Dienstleistungen|Produkte|Sicherheitsnotizen|Über uns|Kontakt|Suche
MSIE MIME Demo
 
Eigene Advisories
 FireWall-1 RDP Bypass
 FireWall-1 RDP Proof of Concept
 VirusWall Circumvention
 VirusWall Proof of Concept
 MSIE MIME Demo
RUS-CERT Newsticker
Ihre Verbindungsdaten
WLAN-Sicherheits-Tipps

Microsoft Internet Explorer MIME Header Attachment Execution Vulnerability

More information about this vulnerability is available from the Microsoft Security Bulletin MS01-020. It is documented on SecurityFocus with bugtraq id 2524 and in the Common Vulnerabilities and Exposures database as CVE-2001-0154.

Public demo server

A demo server for this vulnerability is available at msie-mime-demo.inside-security.de

If a dialog window with the content "Test virus: Code was executed, attempted to create C:\test.txt" pops up and/or the file test.txt is created on the C:\ drive the browser in question is vulnerable.

Start | Impressum | Sitemap© Inside Security IT Consulting GmbH