On 25 Jul 2006 09:54:31 -0000, knight4vn_at_yahoo.com <knight4vn_at_yahoo.com> wrote:
> I found out one way to make Internet Explorer ver 6.0 recognize incorrectly type of any particular files.
>
> E.g one file named "abcd.exe" is Application type but we can force the IE browser to understand that
>
> file is "Image/JPG" or "Image/Gif" and so on ..
>
> Currently, I'm still working to find the solution allowed us to exploit IE based on this bug.
>
> Does any one have any suggestions?
this isn't a bug it's by design.
it can be useful, though, to force ie to download your executable
binary data to the local machine though. but it won't be executed,
unless it's combined with other ie bugs.
-- mic
Received on Jul 26 2006