The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Microsoft Windows "desktop.ini" Arbitrary File Execution Vulnerability
Time: 10:33 EST/15:33 GMT | News Source: E-Mail | Posted By: Byron Hinson

Roozbeh Afrasiabi has reported a vulnerability in Microsoft Windows, which can be exploited by malicious, local users to gain escalated privileges. The problem is that "desktop.ini" files may contain CLSID references to arbitrary executables in the "[.ShellClassInfo]" section. This can be exploited to execute arbitrary files with another user's privileges when the user browses a folder containing a malicious "desktop.ini" file.

Write Comment
Return to News

  Displaying 201 through 202 of 202
Prev | First
  The time now is 2:23:40 AM ET.
Any comment problems? E-mail us
#201 By 4240821 (195.208.3.68) at 10/5/2024 6:19:44 AM
https://bio.site/satobena592
https://bio.site/neypresovdi901
https://bio.site/tigpumanor429
https://bio.site/caukocorless981
https://bio.site/unrebestio309
https://bio.site/petiriri556
https://bio.site/jaymacomcoa944
https://bio.site/tiofrohobgol171
https://bio.site/sachilotu661
https://bio.site/invitoono692

#202 By 4240821 (62.76.153.72) at 10/5/2024 11:36:32 PM
https://allmyfaves.com/crabfendotu94
https://allmyfaves.com/saszadese893
https://allmyfaves.com/juicisomut48
https://allmyfaves.com/reipaterlay860
https://allmyfaves.com/wrapalpunse713
https://allmyfaves.com/exgacomdo362
https://allmyfaves.com/chesigpofu413
https://allmyfaves.com/cidelpodo615
https://allmyfaves.com/lopcisatoms787
https://allmyfaves.com/tanquithoughstan881

Write Comment
Return to News
  Displaying 201 through 202 of 202
Prev | First
  The time now is 2:23:40 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *