• caglararli@hotmail.com
  • 05386281520

MS12-074: Addressing a vulnerability in WPAD’s PAC file handling

Çağlar Arlı      -    14 Views

MS12-074: Addressing a vulnerability in WPAD’s PAC file handling

Today we released MS12-074, addressing a Critical class vulnerability in the .NET Framework that could potentially allow remote code execution with no user interaction. This particular CVE, CVE-2012-4776, could allow an attacker on a local network to host a malicious WPAD PAC file containing script code which could be executed on a victim machine without requiring any type of authentication or user interaction.