Internet Explorer “document.open()” Method Spoofing Vulnerability
Posted in Security on Jul 19th, 2007
Release Date: 2007-07-16
Last Update: 2007-07-19
Critical: Less Critical
Impact: Spoofing
Where: From remote
Solution Status: Unpatched
Software: Microsoft Internet Explorer 7.x
Michal Zalewski has discovered a vulnerability in Internet Explorer, which can be exploited by a malicious website to spoof the address bar.
The vulnerability is caused due to an error in the handling of the “document.open()” method and can be […]