Core Security
info@coresecurity.com  | +1.617.399.6980 | Contact Us   Core Blog Core Blog Twitter LinkedIn youtube
SHARE

CORE IMPACT v7.5 - Exploits Update (Fri Nov 30 2007)

QuickTime RTSP Content-Type exploit update

Exploits/Client Side  [Windows]




• Fri Nov 30 2007
This module runs a server waiting for vulnerable clients to connect to it. When the client connects, it will try to install an agent by exploiting a vulnerability in Apple QuickTime, which allows unauthenticated attackers to execute arbitrary code or cause a denial of service condition. This updates adds Vista as a supported platform for Quicktime 7.3 and also targets Quicktime version 7.2 in both Windows XP and Windows Vista.

Exploits Vulnerabiltiy: CVE-9999-29089



< Back to Product Updates