mirror of
				https://github.com/wiiu-env/JsTypeHax.git
				synced 2025-10-31 01:16:04 +01:00 
			
		
		
		
	
			
				
					
						
					
					master
				
			
			
		
	 orboditilt
		
	
	45741b8d58
	
	
	Add a "landing page" as index.php
			orboditilt
		
	
	45741b8d58
	
	
	Add a "landing page" as index.php
		
			
			Update the README to add useful tips and some more information
JsTypeHax
Wii U browser exploit for system version 5.5.x (5.5.1 and 5.5.3 has been tested, but any 5.5.x should work).
The exploit may even work on older versions, but this has not been tested yet.
Usage
Requires a valid payload ("code550.bin") in the root dir and the release files
from the wiiuhaxx_common repo
inside a subfolder called "wiiuhaxx_common".
The environment after getting code execution is very fragile. It's recommended to use the JsTypeHax_payload to get into a limited, but stable one.
Useful tips
- Make sure to run the exploit via an link (like the index.php), visiting the exploit page (index-hax.php) directly may fail.
- If you have any issues, try to reset your browser save data.
- Don't visit any other pages before doing the exploit (open browser -> open index.php -> click on "HAXX")
Requirements
A webserver with php support.
The bug
CVE-2013-2857, Use after free https://bugs.chromium.org/p/chromium/issues/detail?id=240124 .
Credits
- JumpCallPop, jam1garner, hedgeberg: Inital exploit
- yellows8: ROP
- orboditilt: increasing stability
Description
				
					Languages
				
				
								
								
									PHP
								
								95.3%
							
						
							
								
								
									Hack
								
								4.7%