Go Back   Webmaster Forums UK SEO SEM Webmaster Community Forum - UKWW > Business Discussions > Business Forum > In The News
Register FAQ Members List Downloads Calendar Today's Posts Webmaster Resources Webmaster Blogs
 
 

In The News Webmastering, information technology and related information currently in the new.

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 01-14-2005, 03:40 PM
ovi
Guest
 
Posts: n/a
Default New Vulnerability

The Security Company SECUNIA has discovered vulnerability in many browsers, which can permit the attacker to trick the user and to find out sensitive data from him.
The cause of this problem is the fact that the browser allows the control of the data shown in a window if it knows the name of this. In this way an attacker can prepare a modified web page and convince the user who visits this to open a trusted site in another window, using a link that seems to be ok in a "trap" page. Because it's a site that the attacker knows will be accessed, he knows the name of the window, this mean that the attacker could control the data shown in the open window by the user who thinks that he access the information from the trust site.
Any data inserted in this fake page will be accessed by any attacker, who can access sensitive information. The vulnerability has been confirmed in the following versions of these browsers:
Konqueror 3.2.2.-6. Opera 7.54, Safari 1.2.4, Microsoft Internet Explorer 6.0 (on a Windows XP SP1/SP2 System), mozilla 1.7.3, Mozilla Firefox 1.0, Netscape 7.2.
SECUNIA has put public available a webpage that use the vulnerability to test is the browser you use is vulnerable. The address of the page is:

secunia.com/multiple_browsers_window_injection_vulnerability_t est

Until the appearance of new versions of these browsers, which will remove this vulnerability, it is recommended not to access sites that don’t seems to be trust-worthy while you also access trusted sites.
Digg this Post!Add Post to del.icio.usStumble this Post!Wong this Post!
Reply With Quote
Reply

Bookmarks



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Webmaster Resources
UK WW SEO Tools
Find UK Hosts
 
The Forum Rules
Forum Rules - MUST READ
 
Site Of the Month
BizzFace
Nominate site of the month
 
Tag Cloud
0bones ad agency backlinks beauty bid directory brand handbag brand new cash christian dior purse clothes content for sale contest directories directory dooney and bourke purse exchange faric handbag fendi purse free free directories gambling giveaway go kart graphic desingning guaranteed listing handbags high replica internet directories jewelry juicy couture purse link link development link leaders link popularity links link sales louis vuitton purse marc jacobs purse mortgage page rank pet picture of the day poker post request seobowl social sunglasses themes today in history versace purse wallets web desinging web hosting web space wordpress writer

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Gmail cookie vulnerability exposes user's privacy temi Google 1 10-08-2007 01:39 PM
phpbb vulnerability ovi In The News 2 12-23-2004 02:27 AM
Vulnerability in Google Groups Darksat General Search Engine Discussions 0 12-19-2004 12:16 PM


All times are GMT. The time now is 05:28 PM.

UK Webmaster World Forums - Internet marketing, web development, domain names, SEO contest and discussuons.
Subscribe to our feeds   Subscribe to our feeds

Powered by vBulletin® Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
LinkBacks Enabled by vBSEO 3.1.0