[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

IE v6.0,SP1 (Server 2003) Travel Log Cross Domain Vulnerability

ID: oval:org.mitre.oval:def:805Date: (C)2004-02-03   (M)2021-09-11
Class: VULNERABILITYFamily: windows




Internet Explorer 5.01 through 6 SP1 allows remote attackers to bypass zone restrictions via a javascript protocol URL in a sub-frame, which is added to the history list and executed in the top window's zone when the history.back (back) function is called, as demonstrated by BackToFramedJpu, aka the "Travel Log Cross Domain Vulnerability."

Platform:
Microsoft Windows Server 2003
Product:
Microsoft Internet Explorer
Reference:
CVE-2003-1026
CVE    1
CVE-2003-1026

© SecPod Technologies