[Forgot Password]
Login  Register Subscribe

30481

 
 

423868

 
 

256148

 
 

909

 
 

199106

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2003-0816Date: (C)2004-02-03   (M)2023-12-22


Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions by (1) using the NavigateAndFind method to load a file: URL containing Javascript, as demonstrated by NAFfileJPU, (2) using the window.open method to load a file: URL containing Javascript, as demonstrated using WsOpenFileJPU, (3) setting the href property in the base tag for the _search window, as demonstrated using WsBASEjpu, (4) loading the search window into an Iframe, as demonstrated using WsFakeSrc, (5) caching a javascript: URL in the browser history, then accessing that URL in the same frame as the target domain, as demonstrated using WsOpenJpuInHistory, NAFjpuInHistory, BackMyParent, BackMyParent2, and RefBack, aka the "Script URLs Cross Domain" vulnerability.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 7.5
Exploit Score: 10.0
Impact Score: 6.4
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: PARTIAL
Integrity: PARTIAL
Availability: PARTIAL
  
Reference:
SECTRACK-1007687
SECUNIA-10192
http://marc.info/?l=bugtraq&m=106322240132721&w=2
http://www.securityfocus.com/archive/1/336937
http://marc.info/?l=bugtraq&m=106321693517858&w=2
http://marc.info/?l=bugtraq&m=106321638416884&w=2
http://marc.info/?l=bugtraq&m=106322063729496&w=2
http://marc.info/?l=bugtraq&m=106321781819727&w=2
http://marc.info/?l=bugtraq&m=106321882821788&w=2
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2003-09/0146.html
http://www.securityfocus.com/archive/1/337086
MS03-048
VU#652452
VU#771604
http://www.safecenter.net/UMBRELLAWEBV4/NAFfileJPU/NAFfileJPU-Content.htm
http://www.safecenter.net/UMBRELLAWEBV4/WsOpenFileJPU/WsOpenFileJPU-Content.HTM
http://www.safecenter.net/liudieyu/BackMyParent/BackMyParent-content.htm
http://www.safecenter.net/liudieyu/BackMyParent2/BackMyParent2-Content.HTM
http://www.safecenter.net/liudieyu/NAFjpuInHistory/NAFjpuInHistory-Content.HTM
http://www.safecenter.net/liudieyu/RefBack/RefBack-Content.HTM
http://www.safecenter.net/liudieyu/WsBASEjpu/WsBASEjpu-Content.HTM
http://www.safecenter.net/liudieyu/WsFakeSrc/WsFakeSrc-Content.HTM
http://www.safecenter.net/liudieyu/WsOpenJpuInHistory/WsOpenJpuInHistory-Content.HTM
oval:org.mitre.oval:def:361
oval:org.mitre.oval:def:362
oval:org.mitre.oval:def:363
oval:org.mitre.oval:def:409
oval:org.mitre.oval:def:416
oval:org.mitre.oval:def:459
oval:org.mitre.oval:def:479

OVAL    7
oval:org.mitre.oval:def:361
oval:org.mitre.oval:def:362
oval:org.mitre.oval:def:479
oval:org.mitre.oval:def:363
...

© SecPod Technologies