Vulnerabilities > CVE-2001-1410 - Unspecified vulnerability in Microsoft Internet Explorer 5.5/6.0
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN microsoft
exploit available
Summary
Internet Explorer 6 and earlier allows remote attackers to create chromeless windows using the Javascript window.createPopup method, which could allow attackers to simulate a victim's display and conduct unauthorized activities or steal sensitive data via social engineering.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 4 |
Exploit-Db
description | Microsoft Internet Explorer 5/6 JavaScript Interface Spoofing Vulnerability. CVE-2001-1410. Remote exploit for windows platform |
id | EDB-ID:21127 |
last seen | 2016-02-02 |
modified | 2001-10-21 |
published | 2001-10-21 |
reporter | Georgi Guninski |
source | https://www.exploit-db.com/download/21127/ |
title | Microsoft Internet Explorer 5/6 JavaScript Interface Spoofing Vulnerability |
References
- http://marc.info/?l=bugtraq&m=105820229407274&w=2
- http://marc.info/?l=bugtraq&m=105820229407274&w=2
- http://marc.info/?l=bugtraq&m=105829174431769&w=2
- http://marc.info/?l=bugtraq&m=105829174431769&w=2
- http://www.doxdesk.com/personal/posts/bugtraq/20030713-ie/
- http://www.doxdesk.com/personal/posts/bugtraq/20030713-ie/
- http://www.guninski.com/popspoof.html
- http://www.guninski.com/popspoof.html
- http://www.kb.cert.org/vuls/id/490708
- http://www.kb.cert.org/vuls/id/490708
- http://www.securityfocus.com/archive/1/221883
- http://www.securityfocus.com/archive/1/221883
- http://www.securityfocus.com/bid/3469
- http://www.securityfocus.com/bid/3469
- http://www.systemintegra.com/ie-fullscreen/
- http://www.systemintegra.com/ie-fullscreen/
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7313
- https://exchange.xforce.ibmcloud.com/vulnerabilities/7313