module
Autodesk IDrop ActiveX Control Heap Memory Corruption
Disclosed | Created |
---|---|
2009-04-02 | 2018-05-30 |
Disclosed
2009-04-02
Created
2018-05-30
Description
This module exploits a heap-based memory corruption vulnerability in
Autodesk IDrop ActiveX control (IDrop.ocx) version 17.1.51.160.
An attacker can execute arbitrary code by triggering a heap use after
free condition using the Src, Background, PackageXml properties.
Autodesk IDrop ActiveX control (IDrop.ocx) version 17.1.51.160.
An attacker can execute arbitrary code by triggering a heap use after
free condition using the Src, Background, PackageXml properties.
Authors
Elazar Broad elazarb@earthlink.net
Trancer mtrancer@gmail.com
Trancer mtrancer@gmail.com
Platform
Windows
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands ‘show options’ or ‘show advanced’:

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.