Russian hacker groups sold exploit code for the WMF exploit in early December, well before vulnerability research companies caught wind of the problem, mounting evidence is suggesting.
A two-week window separated the development of the exploit and the discovery of suspicious activity, according to an eWeek article. During these two weeks the exploit code was available on underground websites -- at a $4,000 cost.
Details regarding the first release
letting some flame over this because it makes me laugh, I can confirm you get much $$ over this selling lowest threat than this to responsible programs.. if the hax0r listen me, you gave it dumbass :>
http://www.securityfocus.com/brief/126