Analysis of MS16-104: .URL files Security Feature Bypass (CVE-2016-3353)
blog.quarkslab.com | vulnerability | CVE-2016-3353 | #rce | #windows | #cve | #patch-analysis | #internet-explorer | #quarkslab | #binary-diffing
Summary
CVE-2016-3353, a .URL file security feature bypass in IE 11 fixed by MS16-104: binary diffing ieframe.dll to locate the patch, understanding the InternetShortcut warning logic, and building a PoC.
- Published
- Collected
Skip to content