· Outpost 10F · Forums · Reply · Statistics · Search ·
Outpost 10F Forums / Archived Topics / Yet another IE Security Hole
Author Message
norrisa
Member
# Posted: 6 Apr 2006 18:56
Reply 


Rating: Moderately critical
Remotely Exploitable: Yes
Localy Exploitable: No
Solution Status: Unpatched
Release Date: 2006-04-04

Hai Nam Luke discovered a hole in Internet Explorer that can be exploited by malicious people to run phishing attacks.

The vulnerability is caused by a condition in the loading or web content and macromedia flash files. This can be used to spoof the address bar in a browser window showing web content from a malicious web site.

Secunia has recently made a test to check if your browser is affected by this issue.

This vulnerability has been onfirmed on a fully patched system with IE 6.0 and Microsoft Windows XP SP1/SP2. The vulnerability has also been confirmed in Internet Explorer 7 Beta 2 Preview. Other versions may also be affected.

You may fix this by Disabling Active Scripting support.

References:
http://www.secunia.com/advisories/19521/

Andrew

Your reply
Bold Style  Italic Style  Underlined Style  Image Link  URL Link     :) ;) :P :( :K :D :D ... Disable smileys


» Username  » Password 
Only registered users can post here. Please enter your login/password details before posting a message.
 
Page loading time (secs): 0.019
Online now: Guests - 2
Members - 0
Most users ever online: 215 [30 Aug 2017 14:12]
Guests - 215 / Members - 0
Powered by: miniBB™ © 2001-2024