Short Name |
HTTP:STC:IE:JS-OOB-WINDOW1 |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Internet Explorer JavaScript Out-of-Bounds Window1 |
Release Date |
2015/09/30 |
Update Number |
2541 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known vulnerability against JavaScript code within HTML. Attackers, by embedding an out-of-bounds window within a fake Web page, can cause a JavaScript window to go out of bounds from the source window. This can cause the window to mask the attackers actual URL or other information, thus making the Web site appear legitimate. Note: Web advertisements can use this technique non-maliciously.