Re: Phishing using IE7 local resource vulnerability

看板Bugtraq作者時間19年前 (2007/03/16 02:13), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/2 (看更多)
This appears to be mitigated in Vista by Protected Mode, which is on by default, and denies access to local resources. If people decide to disable UAC, they must accept the potential risks that come with it, such as this XSS attack. I appreciate that this is a valid risk for XP.
文章代碼(AID): #15-OpZ00 (Bugtraq)
文章代碼(AID): #15-OpZ00 (Bugtraq)