BugTraq
RE: Internet Explorer URL parsing vulnerability Dec 11 2003 03:55PM
Mimmus (dviggiani tiscali it)
Can any workaround be used at proxy level?

I.e. can malicious URLs be blocked using Squid?

Thanks in advance

Domenico Viggiani

> -----Original Message-----

> From: bugtraq (at) zapthedingbat (dot) com [email concealed] [mailto:bugtraq (at) zapthedingbat (dot) com [email concealed]]

> Sent: Tuesday, December 09, 2003 3:44 PM

> Subject: Internet Explorer URL parsing vulnerability

>

> Internet Explorer URL parsing vulnerability

> Vendor Notified 09 December, 2003

>

> # Vulnerability ##########

> There is a flaw in the way that Internet Explorer displays

> URLs in the address bar.

>

> By opening a specially crafted URL an attacker can open a

> page that appears to be from a different domain from the

> current location.

[ reply ]


 

Privacy Statement
Copyright 2010, SecurityFocus