Forum Index

It appears you have not yet registered with our community which limits what you can do & see. It's Free To register, please click here.





Security Alerts and vulnerabilities Lets keep abreast on the latest threats by posting those findings here..

Reply
 
Thread Tools Display Modes
  #1  
Old 01-18-2005, 07:54 AM
Mobo's Avatar
Mobo Mobo is offline
Thinking outside the box
 
Join Date: Sep 2004
Location: Cape Breton
Posts: 4,574
Send a message via ICQ to Mobo Send a message via AIM to Mobo Send a message via MSN to Mobo Send a message via Yahoo to Mobo Send a message via Skype™ to Mobo
Internet Explorer Global Variables Local File Detection Weakness
The problem is that sites from the "Internet" zone can include scripts from local resources. This can be exploited to determine the presence of local scripts by checking the existence of global variables introduced in the included script.

NOTE: This is similar to an old issue, which used the window.onerror event to catch errors in the loading of local scripts.

The weakness has been confirmed on a fully patched system with Internet Explorer 6.0 and Microsoft Windows XP SP2.

Solution:
Disable Active Scripting support for all but trusted sites.
Reply With Quote
Posted


Reply

Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Help With Virus Tspy_alemod.a PaulB1955 Spyware / Virus Removal 32 08-18-2005 06:12 PM
Worms Hellokitty_123 Spyware / Virus Removal 7 06-30-2005 06:47 AM
eliteuvf32.exe?? AdWare? Alex Spyware / Virus Removal 31 05-17-2005 08:50 PM
Popups have seized my computer skinsfan87 Spyware / Virus Removal 234 04-11-2005 01:18 PM
Pop-up crazy MOJET Spyware / Virus Removal 11 03-30-2005 08:22 PM



All times are GMT -5. The time now is 06:01 AM.


Firefox 2