Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Full Disclosure: SecNiche : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos Vulnerability

SecNiche : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos Vulnerability

From: Aditya K Sood <zeroknock_at_secniche.org>
Date: Thu, 16 Aug 2007 20:36:58 -0700

Advisory : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos
Vulnerability

Dated : 15 August 2007

Severity : Critical

Explanation :

The vulnerability persists in the popup blocker functioning to allow
specific websites to execute
popup in the running instance of Internet Explorer. An attacker can
easily exploits it by enabling
a browser to run a malicious script in the context of Internet Explorer.
The script manipulates the
registry entries for specific websites through Javascript. It adds fake
or malicious websites as an
allowed websites in the pop up blocker. The cause user visiting a
untrusted website or any othe
malicious cause.

Detail Advisory :
http://www.secniche.org/advisory/Internet_Pop_Phish_Dos_Adv.pdf
http://www.secniche.org/adv.html

Proof of Concept : Level 1 Infection Test
http://www.secniche.org/misc/ie_pop_by_level1_test.zip

Test run fine locally as well with Web server [IIS] automated server
object calling. Infection
through Active X Object.

Regards
AKS aka 0kn0ck
http://www.secniche.org

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Received on Aug 15 2007

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]