Newsgrupos.com  

Retroceder   Newsgrupos.com > Forum > Newsgroup es.comp.* Foro > Newsgroup es.comp.seguridad.misc
Registrarse Preguntas Frecuentes Lista de Foreros Calendario Buscar Temas de Hoy Marcar Foros Como Leídos




Respuesta
 
LinkBack Herramientas Desplegado
  #1 (permalink)  
Antiguo 13-07-2004, 21:20:33
Ille Corvus
 
Mensajes: n/a
Predeterminado [Vulnerable] Microsoft Internet Explorer Multiple

Microsoft Internet Explorer Multiple Vulnerabilities
http://secunia.com/advisories/12048/


Secunia Advisory: SA12048
Release Date: 2004-07-13

Critical: Extremely critical
Impact: Security Bypass Spoofing
System access
Where: From remote

Software: Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6

Choose a product and view comprehensive vulnerability statistics and
all Secunia advisories affecting it.

Description:
Paul has reported some vulnerabilities in Internet Explorer, allowing
malicious people to bypass security restrictions and potentially
compromise a vulnerable system.

1) It is possible to redirect a function to another function with the
same name, which allows a malicious website to access the function
without the normal security restrictions.

Successful exploitation allows execution of arbitrary script code in
the context of another website. This could potentially allow execution
of arbitrary code in other security zones too.

2) Malicious sites can trick users into performing actions like
drag'n'drop or click on a resource without their knowledge. An example
has been provided, which allows sites to add links to "Favorites".
However, resources need not be links and the destination could be
different than "Favorites".

This issue is a variant of an issue discovered by Liu Die Yu.
SA9711

http-equiv has posted a PoC (Proof of Concept), which combined with
the inherently insecure Windows "shell:" functionality, can be
exploited to compromise a vulnerable system.

3) It is possible to inject arbitrary script code into Channel links
in Favorites, which will be executed when the Channel is added. The
script code is executed in Local Security Zone context.

4) It is possible to place arbitrary content above any other window
and dialog box using the "Window.createPopup()" function. This can be
exploited to "alter" the appearance of dialog boxes and other windows.

Successful exploitation may potentially cause users to open harmful
files or do other harmful actions without knowing it.

An additional issue allowing malicious sites to inject script into the
Local Security Zone using anchor references has also been reported to
affect Internet Explorer 6 running on Windows XP SP2 (release
candidate / beta). This issue could not be confirmed on a fully
patched Windows XP SP1 system.

Issues 1-4 has been confirmed on a fully patched system with Internet
Explorer 6 and Microsoft Windows XP SP1.

Previous versions of Internet Explorer may also be affected.

Solution:
Disable Active Scripting.

Use another product.

Provided and/or discovered by:
1-3) Discovered by Paul (greyhats).
4) Originally discovered by Georgi Guninski.

Other References:
SA9711:
http://secunia.com/advisories/9711/


--
Meritorios de Filtrado (Kill-File Global):
tella llop, jm (N.B. 2003.10.25)


«Prefiero molestar con la verdad que complacer con adulaciones (Lucio Anneo Seneca)»
Responder Con Cita
Alt Today
Advertising
Google Adsense
 
This advertising will not be shown
in this way to registered members.
Register your free account today
and become a member on
Newsgrupos.com
Standard Sponsored Links

Respuesta


Herramientas
Desplegado

Normas de Publicación
no Puedes crear nuevos temas
no Puedes responder a temas
no Puedes adjuntar archivos
no Puedes editar tus mensajes

El código vB está habilitado
Las caritas están habilitado
Código [IMG] está habilitado
Código HTML está deshabilitado
Trackbacks are habilitado
Pingbacks are habilitado
Refbacks are habilitado


Temas Similares
Tema Autor Foro Respuestas Último mensaje
Microsoft Internet Explorer Multiple Vulnerabilities c.b. Newsgroup es.comp.virus 0 13-12-2005 20:30:39
[Vulnerable] Microsoft Internet Explorer Multiple Ille Corvus Newsgroup es.comp.seguridad.so 0 13-07-2004 21:20:33
[VULNERABLE] Microsoft Internet Explorer '%2F' Ille Corvus Newsgroup es.comp.seguridad.misc 0 14-06-2004 16:03:28
[VULNERABLE] Microsoft Internet Explorer '%2F' Ille Corvus Newsgroup es.comp.seguridad.so 0 14-06-2004 16:03:28
[VULNERABLE] Microsoft Internet Explorer Ille Corvus Newsgroup es.comp.seguridad.misc 0 11-06-2004 21:31:40





Powered by: vBulletin, Versión 3.6.8
Derechos de Autor ©2000 - 2009, Jelsoft Enterprises Ltd.

LinkBacks Enabled by vBSEO 3.1.0 © 2007, Crawlability, Inc.