This module exploits a vulnerability in the UfPBCtrl.dll control included in the Trend Micro Internet Security Pro 2010 ActiveX application. The exploit is triggered when the extSetOwner() method processes a malformed argument resulting in a memory corruption. This module runs a malicious web site on the Core Impact Console and waits for an unsuspecting user to trigger the exploit by connecting to the web site. This module runs a web server waiting for vulnerable clients (Internet Explorer 6 or 7) to connect to it. When the client connects, it will try to install an agent by exploiting this vulnerability.
CVE Link
Exploit Platform
Exploit Type
Product Name