hacking security forum

Re: [Full-Disclosure] Re: Internet Explorer URL parsing vulnerabi lity

From: William Warren <hescominsoon@trifles.com>
Date: Thu Dec 11 2003 - 14:55:26 CST

mozilla 1.6a

http://www.microsoft.com%01@slashdot.org/
(that is in the address bar) and slashdot comes up in the browser window..

Jim Race wrote:

>> http://petard.freeshell.org/ms-announce.html
>
>
> Mozilla 1.5:
>
> Displays in status bar, as well as takes user to http://www.microsoft.com
>
> Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.5) Gecko/20031007
>
> -jim
>
>
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.netsys.com/full-disclosure-charter.html
>

-- 
May God Bless you and everything you touch.
My "foundation" verse: 
Isaiah 54:17 No weapon that is formed against thee shall prosper; and every tongue that shall rise against thee in judgment thou shalt condemn. This is the heritage of the servants of the LORD, and their righteousness is of me, saith the LORD.
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Received on Thu Dec 11 15:23:31 2003

This archive was generated by hypermail 2.1.8 : Thu Dec 11 2003 - 16:01:06 CST

Custom Search