Memory Corruption Vulnerabilities Target IE 6 & 7
ID: a1cd6b2c-5853-5961-810e-4cb590f8ca6b
STIX ID: report--a1cd6b2c-5853-5961-810e-4cb590f8ca6b
Feed Name: Zscaler Security Research Blog
Threat Score
This report deconstructs an Internet Explorer client-side attack that combines two use‑after‑free vulnerabilities (CVE‑2010‑0806 and CVE‑2010‑3962). It presents de‑obfuscated JavaScript, explains version checks, heap‑spray and shellcode usage, demonstrates how the two exploits are combined to increase success, and highlights the malicious domain dxcdfghg.com hosting exploit pages and other malicious sites.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
