[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

IE6 for Server 2003 Security Zone Restriction Bypass Vulnerability

ID: oval:org.mitre.oval:def:3060Date: (C)2005-03-17   (M)2021-07-27
Class: VULNERABILITYFamily: windows




Internet Explorer 5.01, 5.5, and 6 allows remote attackers to spoof a less restrictive security zone and execute arbitrary code via an HTML page containing URLs that contain hostnames that have been double hex encoded, which are decoded twice to generate a malicious hostname, aka the "URL Decoding Zone Spoofing Vulnerability."

Platform:
Microsoft Windows Server 2003
Product:
Microsoft Internet Explorer
Reference:
CVE-2005-0054
CVE    1
CVE-2005-0054

© SecPod Technologies