Full Disclosure mailing list archives
Re: Re: Internet Explorer URL parsing vulnerabi lity
From: Peter Moody <peter () ucsc edu>
Date: Thu, 11 Dec 2003 14:24:26 -0800
On Thu, 2003-12-11 at 12:55, William Warren wrote:
mozilla 1.6a http://www.microsoft.com%01 () slashdot org/ (that is in the address bar) and slashdot comes up in the browser window..
in 1.6b slashdot is downloaded/rendered and http://www.microsoft.com%01 () slashdot org/ is displayed in the address bar. -Peter -- Peter Moody <peter () ucsc edu> Information Security Administrator 831/459.5409 Communications and Technology Services. UC, Santa Cruz. http://security.ucsc.edu/pgp/peter.moody.pub :wq
Attachment:
signature.asc
Description: This is a digitally signed message part
Current thread:
- RE: Re: Internet Explorer URL parsing vulnerabi lity David Vincent (Dec 10)
- <Possible follow-ups>
- RE: Re: Internet Explorer URL parsing vulnerabi lity David Vincent (Dec 11)
- RE: Re: Internet Explorer URL parsing vulnerabi lity Frank Knobbe (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Jim Race (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Jim Race (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Heikki Toivonen (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Dave Sherohman (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Nick FitzGerald (Dec 11)
- RE: Re: Internet Explorer URL parsing vulnerabi lity Bill Royds (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity William Warren (Dec 11)
- Re: Re: Internet Explorer URL parsing vulnerabi lity Peter Moody (Dec 11)