Computer Security
[EN] securityvulns.ru
no-pyccku



Multiple Microsoft Internet Explorer crossite scripting bugs
updated since 13.07.2004
Published:06.09.2004
Source:BUGTRAQ
SecurityVulns ID:3833
Type:client
Level:8/10
Description:Same name function redirection crossite scripting, ADODB.Stream vulnerability variant (Shell.Application), mouse click hijacking with Popup.show(), Media Preview crossite scripting, drag-n-drop files to shell:Startup.
Affected:MICROSOFT : Internet Explorer 5.5
 MICROSOFT : Internet Explorer 6.0
Original documentdocumentThor Larholm, FW: [Unpatched] Shell and Drag'n'Drop vulnerabilities (06.09.2004)
 documentPaul, MSIE Overly Trusted Location Variant Method Cache Vulnerability (19.07.2004)
 documentFerruh Mavituna, IE Shell URI Download and Execute, POC (14.07.2004)
 documentPaul, Media Preview Script Execution Vulnerability (13.07.2004)
 documentjelmer, Re: [Full-Disclosure] THE VULNERABILITY STILL WORKS AFTER TODAY'S PATCH (13.07.2004)
 documentPaul, MSOE Javascript Execution Vulnerability (13.07.2004)
 documentPaul, MSIE Similar Method Name Redirection Cross Site/Zone Scripting Vulnerability (13.07.2004)
 documentPaul, HijackClick 3 (13.07.2004)
Files:Microsoft Security Bulletin MS04-025 Cumulative Security Update for Internet Explorer (867801)
 What A Drag
Discuss:Read or add your comments to this news (0 comments)

About | Terms of use | Privacy Policy
© SecurityVulns, 3APA3A, Vladimir Dubrovin
Nizhny Novgorod

 
 



Rating@Mail.ru
test server