Immunity, Inc.
Name ms15_100
CVE CVE-2015-2509
Exploit Pack CANVAS
Descriptionms15_100
NotesReferences: https://technet.microsoft.com/library/security/ms15-100
CVE Name: CVE-2015-2509
VENDOR: Microsoft
NOTES:
Tested on:
Windows 7 SP1(32 bits)
Windows 7 SP1(64 bits)

Use port 80 as the server port (Windows requirement related to WebDAV). Also, under
the Response tab of ClientD main window, the option "Respond directly with exploit"
must be selected.

NOTE: Our payload is a MOSDEF trojan. A popup will appear telling the binary
is not signed. If you don't want the popup to appear use a signed payload.

Date public: 08/09/2015
CVE Url: http://www.cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-2509
CVSS: 9.3

Learn more about the CANVAS Exploit Pack here: CANVAS