MS Word 和 MS WordPad 通过 IE VBS Engine 实现的 RCE
MS Word 和 MS WordPad 通过 IE VBS RCE 实现的远程代码执行 https://github.com/smgorelik/Windows-RCE-exploits/tree/master/Web/VBScript
将 index.html 保存到 Web 服务器 然后使用 Python 脚本生成 RTF 漏洞利用 Shellcode 是静态的 Down\Exec Putty.exe 来自主网站
查看 index.html 以获取 shellcode