关键信息 漏洞名称: Green Dam 3.17 - URL Processing Buffer Overflow (Metasploit) EDB-ID: 8986 CVE: 无 作者: INJANCER 类型: Remote 平台: Windows 日期: 2009-06-10 验证状态: EDB Verified 漏洞描述 影响版本: Green Dam Youth Escort version 3.17 成功测试平台: - Internet Explorer 5, Windows XP SP3 - Internet Explorer 6, Windows XP SP3 - Internet Explorer 7, Windows Vista SP1 绕过机制: .NET binary is used to bypass DEP and ASLR 技术细节 利用方式: Stack-based buffer overflow in the URL processing function of Green Dam Youth Escort. 技术: Uses the .NET DLL relay technique by Alexander Sotirov and Mark Dowd. 相关链接 URL Analysis of the Green Dam Censorware System Original exploit by scifish@nudt 标签 Metasploit Framework (MSF)