ie-cache-script-injection (12961) Medium Risk
Microsoft Internet Explorer browser cache script injection
Description:
Microsoft Internet Explorer versions 5.0.1, 5.5, and 6.0 could allow a remote attacker to execute script on a victim's computer, caused by a vulnerability when Internet Explorer checks for the existence of local files in the browser's cache. A remote attacker could create a malicious Web page that would allow the attacker to bypass the cross-domain security model. This could allow an attacker to cause the execution of malicious script within the victim's "My Computer" security zone, once the page is visited.
Platforms Affected:
Microsoft Internet Explorer 5.01
Microsoft Internet Explorer 5.5
Microsoft Internet Explorer 6.0
Windows Any version
does anyone have the HTML for this exploit?




