Short Name |
HTTP:STC:IE:7-WINDOW-SPOOF |
|---|---|
Severity |
Minor |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Microsoft Internet Explorer 7 Popup Window Address Bar Spoofing |
Release Date |
2012/12/12 |
Update Number |
2210 |
Supported Platforms |
idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against Microsoft Internet Explorer 7. A malicious attacker may trick a normal user to visit an unintended webpage that may result in arbitrary code execution.
Microsoft Internet Explorer is prone to a weakness that allows attackers to spoof a popup window and address bar. Attackers may exploit this via a malicious web page to spoof the contents and origin of a page that the victim may trust. This vulnerability may be useful in phishing or other attacks that rely on content spoofing.