Dec 20 2004

‘Greyhat’ Exposes New IE Flaw

  • Written by moneoa
  • No Comments

A security research group known as the Greyhats Security Group has announced a new Microsoft Internet Explorer flaw and has posted a proof of concept exploit to back up its claims.


An individual “Greyhat” going by the name of “Paul” posted the vulnerability, which has been confirmed by other security research firms including Secunia on fully patched systems witn XP SP2 and IE 6.


Secunia, which tagged the flaw moderately critical, noted that, “the vulnerability is caused due to an error in the DHTML Edit ActiveX control when handling the execScript() function in certain situations.” The so-called, “MSIE DHTML Edit Control Cross Site Scripting Vulnerability” could allow an attacker to execute a cross-site scripting attack. It is possible to steal cookie-based authentication credentials through this vulnerability.

Read the complete story @ Internet News.com

http://www.internetnews.com/security/article.php/3450131

Related Posts

  1. IE flaw threat hits the roof
  2. Microsoft warns of ‘important’ Windows flaw
  3. Microsoft IE Flaw Puts Google Users at Risk
  4. ‘Highly critical’ Linux flaw patches
  5. Kazaa security hole undermines network
Zeropaid on Facebook
Trackbacks url:

Leave a Comment...

  • Advertisement

    Giganews Newsgroups

1 Star2 Stars3 Stars4 Stars5 Stars Loading ... Loading ...

  • Smartass: Jag tror inte att någon kommer in just nu......
  • Ron: Do you know of a site where I can down load several days of music as it wouold be played in a night club. An auto D.J. f...
  • Buzz: I loved Demonoid but, there still down and would like to try iptorrent.com. Could I get a invite? Did you ever get back...
  • Sophieanne and Lilli: I wish their was more music....
  • ralphie: OH looky, it still doesn't work on dual screens. Adobe sucks....
  • odball: hej jag är en leged user och nu kommer jag inte in på sidan kan ni vara snälla och undersöka varför mvh G.P...
  • mpsharp.com Blog » Watching NFL games online: [...] show you a number of streams to choose from for each game.  All the streams require some sort of StreamTorrent pl...
  • ejonesss: no it is not going to completely stop piracy because while it will stop those whose reason for piracy is quality it is n...
  • sdsd