Short Name |
HTTP:STC:IE:FRAME-FLOOD |
---|---|
Severity |
Low |
Recommended |
No |
Category |
HTTP |
Keywords |
http internet explorer frame |
Release Date |
2003/06/04 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability in Microsoft Internet Explorer 6. By including an excessive number of FRAME tags in a maliciously crafted HTML document, attackers can force IE to download and run a remote executable, enabling the attacker to gain administrator access.
Remote attackers could exploit this vulnerability to crash an affected machine or to execute arbitrary code with the privileges of the current user.