FirefoxとQuickTime悪用のエクスプロイトが公開

Public Exploit Code Targeting Firefox and Quicktime
added September 12, 2007 at 04:26 pm

US-CERT is aware of working publicly available exploit code that targets users with Firefox and Quicktime installed. This exploit allows a remote, unauthenticated attack to execute arbitrary commands on an affected system.

US-CERT will provide additional information as it becomes available.

Public Exploit Code Targeting Firefox and Quicktime

Mozilla Firefox + QuickTime Command Execution PoC (0day)
0DAY: QuickTime pwns Firefox | GNUCITIZEN
FirefoxとQuickTime悪用のエクスプロイトが公開 - ITmedia エンタープライズ


私の環境では動作しませんでした。
Mozilla/5.0 (Windows; U; Windows NT 5.1; ja; rv:1.8.1.6) Gecko/20070725 Firefox/2.0.0.6
NoScript :: Firefox Add-ons
DropMyRights
QuickTime Plug-in 7.2