Куда я попал?
SECURITM это SGRC система, ? автоматизирующая процессы в службах информационной безопасности. SECURITM помогает построить и управлять ИСПДн, КИИ, ГИС, СМИБ/СУИБ, банковскими системами защиты.
А еще SECURITM это место для обмена опытом и наработками для служб безопасности.

EDB-34010

Exploit

Microsoft Internet Explorer 9/10 - CFormElement Use-After-Free / Memory Corruption (PoC) (MS14-035)

Дата публикации 08.07.2014
Автор Drozdova Liudmila
Платформа windows_x86
Тип dos
Проверено Нет
Файл в источнике exploits/windows_x86/dos/34010.html

Связанные уязвимости CVE

Идентификаторы CVE, указанные в источнике для этой записи
Идентификатор Описание
CVE-2014-2782 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2777 Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary web script with increased privileges vi...
CVE-2014-2776 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-2775 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2773 Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memor...
CVE-2014-2772 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-2771 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-2770 Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-2769 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-2768 Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memor...
CVE-2014-2767 Microsoft Internet Explorer 6 and 7 allows remote attackers to execute arbitrary code or cause a denial of service (memory co...
CVE-2014-2766 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2765 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2764 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-2763 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-2761 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-2760 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-2759 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2758 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2757 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-2756 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-2755 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-2754 Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-2753 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1805 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1804 Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-1803 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1802 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-1800 Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1799 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1797 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-1796 Microsoft Internet Explorer 6 and 8 through 11 allows remote attackers to execute arbitrary code or cause a denial of service...
CVE-2014-1795 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1794 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-1792 Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-1791 Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1790 Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1789 Microsoft Internet Explorer 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1788 Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-1786 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1785 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1784 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1783 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1782 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1781 Microsoft Internet Explorer 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-1780 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-1779 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1778 Microsoft Internet Explorer 8 through 11 allows remote attackers to execute arbitrary web script with increased privileges vi...
CVE-2014-1777 Microsoft Internet Explorer 10 and 11 allows remote attackers to read local files on the client via a crafted web site, aka "...
CVE-2014-1775 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1774 Microsoft Internet Explorer 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupti...
CVE-2014-1773 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1772 Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory...
CVE-2014-1771 SChannel in Microsoft Internet Explorer 6 through 11 does not ensure that a server's X.509 certificate is the same during ren...
CVE-2014-1770 Use-after-free vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code vi...
CVE-2014-1769 Microsoft Internet Explorer 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corrupt...
CVE-2014-1766 Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...
CVE-2014-1764 Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code and bypass a sandbox protection me...
CVE-2014-1762 Unspecified vulnerability in Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code with...
CVE-2014-0282 Microsoft Internet Explorer 6 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memo...

Связанные уязвимости БДУ ФСТЭК

Идентификатор Название
BDU:2014-00124 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить web-скрипт с повышенными привилегиями
BDU:2014-00144 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2015-00510 Уязвимости браузера Internet Explorer, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2014-00166 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00185 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00179 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00304 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00154 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00210 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00208 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00171 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00139 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00135 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00127 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2015-00500 Уязвимости браузера Internet Explorer, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2014-00123 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00121 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00165 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00233 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00138 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00153 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00125 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00189 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00205 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00150 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00207 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00161 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00215 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00191 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00172 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00196 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00163 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00130 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00193 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00169 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить web-скрипт с повышенными привилегиями
BDU:2014-00203 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику получить несанкционированный доступ к конфиденциальной информации в локальных файлах
BDU:2014-00214 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2015-00495 Уязвимость браузера Internet Explorer, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации
BDU:2014-00128 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику получить несанкционированный доступ к передаваемым данным
BDU:2014-00132 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00113 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00131 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код или вызвать отказ в обслуживании
BDU:2014-00232 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код
BDU:2014-00186 Уязвимость браузера Internet Explorer, позволяющая злоумышленнику выполнить произвольный код

Мы используем cookie-файлы, чтобы получить статистику, которая помогает нам улучшить сервис для вас с целью персонализации сервисов и предложений. Вы может прочитать подробнее о cookie-файлах или изменить настройки браузера. Продолжая пользоваться сайтом, вы даёте согласие на использование ваших cookie-файлов и соглашаетесь с Политикой обработки персональных данных.