Short Name |
IMAP:OVERFLOW:OL-IFRAME-EXEC |
---|---|
Severity |
Low |
Recommended |
No |
Category |
IMAP |
Keywords |
Outlook Frame Overflow Forced File Execution |
Release Date |
2003/10/15 |
Update Number |
1213 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a vulnerability in Microsoft Internet Explorer. IE 6.0 SP1 and earlier versions are vulnerable; other applications such as Microsoft Outlook can also be vulnerable. Attackers can create a malicious Web site that contains an excessive number of iFrame tags. When targets download the malicious Web page, their Internet Explorer client is forced to execute an arbitrary local file.
Internet Explorer is reported to be vulnerable to a zone bypass issue. Allegedly, if Internet Explorer attempts to open a web page containing numerous 'file://' requests each contained in a separate Iframe, the requested file will eventually be executed in the Local Computer zone.