JPEG (GDI+) VGX exploit

This module runs a web server waiting for vulnerable clients (Internet Explorer, Outlook) to connect to it. When the client connects, it will try to install an agent by sending a specially crafted JPEG file which exploits the GDI JPEG vulnerability. You can force vulnerable clients to connect to the web server automatically by using this module to send them an specially designed e-mail to exploit this vulnerability if the client uses Outlook Express to read their mails.
Exploit Platform
Exploit Type
Product Name