Microsoft Windows OLE Automation Array Remote Code Execution Exploit (MS14-064)

This module exploits an integer overflow vulnerability in the OleAut32.dll OLE component of Microsoft Windows when redimensioning an array with a specially crafted size value. This module runs a web server waiting for vulnerable clients (Internet Explorer) to connect to it. When the client connects, it will try to install an agent by exploiting this vulnerability.
Exploit Platform
Exploit Type
Product Name