Skip to content

Proof of concept (exploit) for CVE-2024-6473

License

Notifications You must be signed in to change notification settings

12345qwert123456/CVE-2024-6473-PoC

Repository files navigation

CVE-2024-6473 PoC

Yandex Browser for Desktop before 24.7.1.380 has a DLL Hijacking Vulnerability because an untrusted search path is used.

Vulnerable browser version

Important

The Internet must be turned off during installation, otherwise the browser will be updated.

You can download vulerable version from download.cdn.yandex.net

Or usage from archive

  1. Download and unpack Yandex_Browser_24.4.5.498.zip
  2. Start Setup.exe

PoC

I used the "LolNope" approach from here: https://github.com/advancedmonitoring/ProxyDll

You just need to compile the DLL file and place it in the path %LOCALAPPDATA%\Yandex\YandexBrowser\Application and start the browser

PoC

References