CVE-2015-6127
Windows Media Center - Arbitrary File Read via Crafted .mcl File
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2015-6127.
PoCs published by Core Security, Francisco Falcon, sinn3r, including Metasploit module auxiliary/server/ms15_134_mcl_leak.
AI-analyzed exploit summary This exploit leverages a vulnerability in Windows Media Center where a crafted .mcl file can trick the application into rendering itself as an HTML file, allowing arbitrary local file reads via JavaScript and exfiltration to a remote server.
Description
Windows Media Center in Microsoft Windows Vista SP2, Windows 7 SP1, Windows 8, and Windows 8.1 allows remote attackers to read arbitrary files via a crafted .mcl file, aka "Windows Media Center Information Disclosure Vulnerability."
Exploits (2)
This exploit leverages a vulnerability in Windows Media Center where a crafted .mcl file can trick the application into rendering itself as an HTML file, allowing arbitrary local file reads via JavaScript and exfiltration to a remote server.
This exploit leverages a vulnerability in Microsoft Windows Media Center (MS15-134) to render an MCL file as an HTML document in the local machine zone, allowing file leakage via JavaScript. It uses an XMLHttpRequest to exfiltrate specified files to an attacker-controlled server.