Short Name |
HTTP:STC:IE:ADDRBAR-SPOOF-2 |
|---|---|
Severity |
Minor |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Internet Explorer Address Bar Spoofing (2) |
Release Date |
2006/06/13 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+ |
This signature detects attempts to exploit a known vulnerability against Internet Explorer (IE) 5.0 and 6.0. A successful attack can lead to arbitrary code execution. A spoofing vulnerability exists in IE that allows an attacker to display spoofed content in a browser window. The address bar and other parts of the trusted UI can be displayed from trusted Web sites, but the window content contains the attackers Web page.
This vulnerability affects any version of Windows OS previous to XP SP2 that is using Internet Explorer 6.0