Exploitation Summary
CVE-2012-4792 is actively exploited and listed in the CISA Known Exploited Vulnerabilities (KEV) catalog, added July 23, 2024.
EIP tracks 5 public exploits from researchers including Metasploit, OpenSISE, WizardVan, including a Metasploit module exploits/windows/browser/ie_cbutton_uaf.
AI-analyzed exploit summary This Metasploit module exploits a use-after-free vulnerability in Internet Explorer 8 (CVE-2012-4792) by manipulating a CButton object during page reload, leading to arbitrary code execution. It includes ROP chains for various Windows versions and uses JavaScript obfuscation for evasion.
Description
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object, and exploited in the wild in December 2012.
Exploits (5)
This Metasploit module exploits a use-after-free vulnerability in Internet Explorer 8 (CVE-2012-4792) by manipulating a CButton object during page reload, leading to arbitrary code execution. It includes ROP chains for various Windows versions and uses JavaScript obfuscation for evasion.
This is a Metasploit module exploiting a use-after-free vulnerability in Microsoft Internet Explorer (CVE-2012-4792). It leverages heap spraying and ROP chains to achieve arbitrary code execution on targeted systems.
The repository contains only a minimal README with a brief description of CVE-2012-4792 but no actual exploit code or technical details. It appears to be a placeholder or incomplete collection.
The repository contains only a README.md file with minimal information about CVE-2012-4792, mentioning a simple calculator exploitation without providing any actual exploit code or technical details.
This Metasploit module exploits a use-after-free vulnerability in Microsoft Internet Explorer 8 (CVE-2012-4792) by manipulating a CButton object during page reload, leading to arbitrary code execution. It includes ROP chains for various Windows versions and leverages JavaScript to trigger the vulnerability.
References (14)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H