Back to list
*Note: Email address will appear as "user domain ext" to prevent harvesting.
IE6 css set Denial of Service Vulnerability
Jul 12 2010 01:07PM
info securitylab ir
Published by Securitylab.ir
The question is which set the css style of the time wrong.
css definition is f: expression (this.src = 'about: blank', this.outerHTML ='');
In question should be is mshtml.dll ->
/*<![ CDATA [*/
[ more ]
Copyright 2010, SecurityFocus