Exploit Winds3D Viewer 3 - 'GetURL()' Arbitrary File Download

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
33067
Проверка EDB
  1. Пройдено
Автор
DIEGO JUAREZ
Тип уязвимости
REMOTE
Платформа
MULTIPLE
CVE
cve-2009-2386
Дата публикации
2009-06-08
Код:
source: https://www.securityfocus.com/bid/35595/info

Winds3D Viewer is prone to a vulnerability that can allow malicious files to be downloaded an executed within the context of the affected browser that uses the plugin.

Successfully exploiting this issue will allow attackers to compromise the affected application that uses the plugin.

Winds3D Viewer 3.5.0.0 and 3.5.0.5 are vulnerable; other versions may also be affected. 

https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/33067.usr
 
Источник
www.exploit-db.com

Похожие темы