Thursday, June 7, 2007

Firefox and IE - browsers vulnerabilities

In the 4th of jun Michal Zalewski made public at http://lists.grok.org.uk/pipermail/full-disclosure/2007-June/063712.html a list of 4 vulnerabilities of Mozilla Firefox and Microsoft Internet Explorer.
There is one critical problem at the IE with the access to the cookies of some pages by third part pages. A major problem in Firefox with the iframes that could include javascript injection. Ant other two midium problems, one for the browser provided by Mozilla and the other for the Microsoft's browser.
You will find interesting the last one, here is a demo of how you can be triked that you are visiting the real cnn page.

No comments: