Executable installers are vulnerable^WEVIL (case 37): eclipse-inst-win*.exe vulnerable to DLL redirection and manifest hijacking

Posted by Stefan Kanthak on Jul 25

Hi @ll,

this is a followup to “case 36” (posted as “case 35” by mistake),
<http://seclists.org/bugtraq/2016/Jul/82>.

Proof of concept #1:
~~~~~~~~~~~~~~~~~~~~

1. On a 64-bit edition of Windows download the 32-bit and 64-bit
executable installers “eclipse-inst-win32.exe” and
“eclipse-inst-win64.exe”, save them in an arbitrary directory.

2. Create the (empty) files…

Leave a Reply