ACROS Blog: Adobe Reader X (10.1.2) msiexec.exe Planting

看板Bugtraq作者時間13年前 (2012/05/02 10:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串1/1
Adobe issued an update for Adobe Reader X (new version is 10.1.3), which, among other issues, fixes an outside-the-sandbox msiexec.exe EXE planting vulnerability we reported to them earlier this year. This article explains the vulnerability and how it could have been exploited. http://blog.acrossecurity.com/2012/04/adobe-reader-x-1012-msiexecexe-planting.html or http://bit.ly/HyXYAX Enjoy the reading! Mitja Kolsek, CEO / @mkolsek ACROS, d.o.o. Makedonska ulica 113, SI - 2000 Maribor, Slovenia Tel +386.2.3000.280 Fax +386.2.3000.282 Web http://www.acrossecurity.com Blg http://blog.acrossecurity.com Twt @acrossecurity ACROS Security: Finding Your Digital Vulnerabilities Before Others Do
文章代碼(AID): #1Fe9LWXq (Bugtraq)