about advertise contact
Search: Home Vulnerabilities Exploits News Articles RSS Feeds Archive Talk

exploits , vulnerabilities , articles , Multiple Vendor Web Browser FTP Client Cross Site Scripting Vulnerability


Title Multiple Vendor Web Browser FTP Client Cross Site Scripting Vulnerability
Published 2008-10-21-12:00AM
Updated 2008-10-22-01:56PM
Class Design Error
CVE  
Remote  Yes
Local  No
Credit  Muris Kurgas
Vulnerable  Mozilla Firefox 3.0.3
Mozilla Firefox 3.0.2
Mozilla Firefox 3.0.1
Google Chrome 0.2.149 30
Not Vulnerable  
Code  An attacker can exploit these issues by enticing an unsuspecting victim to follow a malicious 'ftp://' link.The following content of a JPG, PDF, or TXT file is available as a proof of concept:<html>
<body>
<script>alert('backdoored');</script>
</body>
</html>
TXT  t3xt 1t!


Advertising

Copyright 2007, SecurityDot
Fri, 18 Dec 2009 13:36:16 +0000

Friends : milw0rm.com , secunia.com , securityfocus.com
GOOGLE
NEWS EXPLOITS VULNS
exploits , 0day exploits , newest exploits , vulnerabilities , newest vulnerabilities , 0day vulnerabilities , newest articles , linux articles , articles
linux 2.6. www.sooroo news for c Http; porno+ boa web Crack Data administra http%3B%2F 200 /compo ftvangles www.sexsex ftvangles kareena ka Http:/Secu suse 10.2 maxcpm.inf DXL shakkela www.twvs.c ms07-015 S....com%2 Bideoporno ftvangles suse 10.2 phpmyadmin 361cn.cn S....com%2 Bideoporno ftvangles www.emplo 200 /compo 200 /compo t517t XXs rmi young SO y Girlsexi scanner xxxayuazha Game power dago femmes nus Ron+Jeremy 200 /compo baike.diao news for c walpaperse Www.xxxboy 356719