Microsoft Internet Explorer NavCancel.HTM Cross-Site Scripting Vulnerability

To exploit this issue, an attacker must entice a victim to follow a maliciously crafted URI.

The following proof-of-concept URI is available:

res://ieframe.dll/navcancl.htm#http://www.example.com/[script]


 

Privacy Statement
Copyright 2010, SecurityFocus