  cjsmith Premium join:2000-11-03 Villa Rica, GA
1 edit | MS Internet Explorer Local File Accesses Vulnerability
  Microsoft Internet Explorer Local File Accesses Vulnerability
#####################################################################
XDisclose Advisory : XD100099 Vulnerability Discovered: February 10th 07 Advisory Released : February 20th 07 Credit : Rajesh Sethumadhavan
Class : Local File Accesses Severity : Critical Solution Status : Unpatched Vendor : Microsoft Corporation Affected applications : Microsoft Internet Explorer Affected version : Microsoft Internet Explorer 6 confirmed (Other versions may be also affected) Affected Platform : Windows XP Professional SP0,SP1,SP2 Windows Home Edition SP0,SP1,SP2 Windows 2003
#####################################################################
Overview: Microsoft Internet Explorer is a default browser bundled with all versions of Microsoft Windows operating system.
Description: A vulnerability has been identified in Microsoft Internet Explorer, (default installation) in windows XP service pack 2 which could be exploited by malicious users to obtain victims local files. This flaw is due to an error in the way Microsoft Internet explorer handles different html tags. Which could be exploited by a malicious remote user to obtain sensitive local files from the victim's computer. |