Openwares IE Security Patch 1.0

Download Free download 278K

  • Downloads:
    296
  • User rating:
    Recommended 0% Not recommended 0%  (0 votes)  Rate it
  • Publisher:
  • Date added:
    16/12/2003
  • File size:
    278K
  • License:
    Free
  • Minimum requirements:
    Windows 98/Me/NT/2000/XP

Publisher’s description

This patch addresses vulnerability in Microsoft Internet Explorer that could allow Hackers and con artists to display a fake URL in the address and status bars. The vulnerability is caused due to an input validation error, which can be exploited by including the '%01' and '%00' URL encoded representations after the username and right before the '@' character in an URL. Successful exploitation allows a malicious person to display an arbitrary FQDN (Fully Qualified Domain Name) in the address and status bars, which is different from the actual location of the page. This can be exploited to trick users into divulging sensitive information or download and execute malware on their systems, because they trust the faked domain in the two bars.

CNET Networks is not responsible for the content of this Publisher's Description. We encourage you to determine whether this product or your intended use is legal. We do not encourage or condone the use of any software in violation of applicable laws. Any questions, complaints or claims related to any specific download should be directed to the relevant vendor.

Advertisement

User comments 0 comments

Add your opinion

Latest Videos

Sponsored content

Power Centre - Content from our premier sponsors

Blogs

  • Suzanne Tindal Sick of broken tender sites
    Some of the state governments desperately need to invest in more user-friendly tender sites so that looking for information on government tenders doesn't have to be a game of blind man's bluff.
  • Array Cyberwar: What is it good for?
    In this week's episode, Cyberwar. What is Australia's place in the world of digital warfare? What are the implications for the NBN?
  • Array Is wholesale-only backhaul just a pipedream?
    The potential acquisition of Pipe Networks by SP Telemedia has raised the question about whether vertically integrated backhaul providers will mean higher wholesale prices for ISP customers.
  • More blogs »

Tags

Back to top

Featured