CVE-2008-6936
Exodus 0.10 - Argument Injection via Encoded Spaces in pres:// URI
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-6936. PoCs published by Nine:Situations:Group.
AI-analyzed exploit summary This exploit leverages a vulnerability in Exodus v0.10 to achieve remote code execution by overwriting a file in the Microsoft Help and Support Center folder via the '-l' argument. The exploit uses a crafted HTML file with malicious links to trigger the vulnerability and execute arbitrary VBScript code.
Description
Argument injection vulnerability in Exodus 0.10 allows remote attackers to inject arbitrary command line arguments, overwrite arbitrary files, and cause a denial of service via encoded spaces in a pres:// URI, a different vector than CVE-2008-6935.
Exploits (2)
This exploit leverages a vulnerability in Exodus v0.10 to achieve remote code execution by overwriting a file in the Microsoft Help and Support Center folder via the '-l' argument. The exploit uses a crafted HTML file with malicious links to trigger the vulnerability and execute arbitrary VBScript code.
The exploit demonstrates arbitrary parameter injection in Exodus v0.10 via a URI handler vulnerability. It leverages the 'im://' protocol handler to inject command-line arguments, enabling file overwrites or crashes.