[Full-disclosure] Microsoft patches the WMI Object Broker bug
H D Moore
fdlist at digitaloffense.net
Wed Nov 1 19:21:00 GMT 2006
http://www.microsoft.com/technet/security/advisory/927709.mspx
The Metasploit 2 module (ie_createobject)[1] has been exploiting this bug
since it was released in August. Glad to see they finally noticed.
Thanks to Aviv for noticing / sending me the link.
-HD
1. http://metasploit.com/projects/Framework/exploits.html#ie_createobject
Full-Disclosure is hosted and sponsored by Secunia.