WinHlp32 exploit v1.42

Vulnerability exploited: CVE-2002-0823 - BID-4857

Category: Exploits/Client Side

Gets execution access on client machine.
This module exploits a vulnerability located in the parameter parser of the Microsoft Windows WinHLP facility. This facility is used by the Microsoft Internet Explorer web browser.

Supported Systems:
    Windows 2000 Professional - sp0 (i386)
    Windows 2000 Professional - sp1 (i386)
    Windows 2000 Professional - sp2 (i386)
    Windows 2000 Server - sp0 (i386)
    Windows 2000 Server - sp1 (i386)
    Windows 2000 Server - sp2 (i386)
    Windows 2000 Advanced Server - sp0 (i386)
    Windows 2000 Advanced Server - sp1 (i386)
    Windows 2000 Advanced Server - sp2 (i386)


This module is included in the latest version of CORE IMPACT, the first automated comprehensive penetration testing product for accurately identifying information security risks. Click here to learn more about the product.