Juniper Networks
Solutions
Products & Services
Company
Partners
Support
Education

Signature Detail

Security Intelligence Center
Signatures
Print

Short Name

HTTP:STC:IE:DIALOG-MANIP

Severity

High

Recommended

No

Recommended Action

Drop

Category

HTTP

Keywords

Internet Explorer Dialog Box Manipulation

Release Date

2005/12/13

Update Number

1213

Supported Platforms

idp-4.0+, isg-3.1.134269+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+

HTTP: Internet Explorer Dialog Box Manipulation


This signature detects downloads of maliciously crafted Web page elements. Remote code execution vulnerabilities exist in the way Internet Explorer displays download dialogs and accepts user input. This interaction could be in the form of certain keystrokes pressed when visiting a Web page. Another variant is also possible where a user is persuaded to double-click on an element of a Web page or select a custom dialog box placed on top of a real download dialog box.

Extended Description

Internet Explorer is prone to a remote code-execution vulnerability through manipulation of custom dialog boxes. Keystrokes entered while one of these dialogs is displayed may be buffered and passed to a download dialog, allowing attacker-supplied code to be executed.

Affected Products

  • Avaya DefinityOne Media Servers R10
  • Avaya DefinityOne Media Servers R11
  • Avaya DefinityOne Media Servers R12
  • Avaya DefinityOne Media Servers R6
  • Avaya DefinityOne Media Servers R7
  • Avaya DefinityOne Media Servers R8
  • Avaya DefinityOne Media Servers R9
  • Avaya DefinityOne Media Servers
  • Avaya IP600 Media Servers R10
  • Avaya IP600 Media Servers R11
  • Avaya IP600 Media Servers R12
  • Avaya IP600 Media Servers R6
  • Avaya IP600 Media Servers R7
  • Avaya IP600 Media Servers R8
  • Avaya IP600 Media Servers R9
  • Avaya IP600 Media Servers
  • Avaya Modular Messaging (MAS)
  • Avaya S8100 Media Servers R10
  • Avaya S8100 Media Servers R11
  • Avaya S8100 Media Servers R12
  • Avaya S8100 Media Servers R6
  • Avaya S8100 Media Servers R7
  • Avaya S8100 Media Servers R8
  • Avaya S8100 Media Servers R9
  • Avaya S8100 Media Servers
  • Avaya Unified Communications Center S3400
  • Microsoft Internet Explorer 5.0.1 SP4
  • Microsoft Internet Explorer 5.5 SP2
  • Microsoft Internet Explorer 6.0
  • Microsoft Internet Explorer 6.0 SP1
  • Nortel Networks Centrex IP Element Manager 2.5.0
  • Nortel Networks Centrex IP Element Manager 7.0.0
  • Nortel Networks Centrex IP Element Manager 8.0.0
  • Nortel Networks Centrex IP Element Manager 9.0.0

References

  • BugTraq: 15823
  • CVE: CVE-2005-2829

Site Map
RSS Feeds
Careers
Accessibility
Feedback
Privacy Policy
Legal Notices
Copyright © 1999-2010 Juniper Networks, Inc. All rights reserved.
Help
|
My Account
|
Log Out