Microsoft Internet Explorer 6.0.2800.1106 on Microsoft Windows XP SP2, and other versions including 5.01 and 5.5, allows remote web servers to bypass zone restrictions and execute arbitrary code in the local computer zone by redirecting a function to another function with the same name, as demonstrated by SimilarMethodNameRedir, aka the "Similar Method Name Redirection Cross Domain Vulnerability."
References
Configurations
History
20 Nov 2024, 23:49
Type | Values Removed | Values Added |
---|---|---|
References | () http://freehost07.websamba.com/greyhats/similarmethodnameredir.htm - | |
References | () http://marc.info/?l=bugtraq&m=108966512815373&w=2 - | |
References | () http://secunia.com/advisories/12048 - | |
References | () http://www.kb.cert.org/vuls/id/207264 - US Government Resource | |
References | () http://www.us-cert.gov/cas/techalerts/TA04-293A.html - US Government Resource | |
References | () https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-038 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/16681 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A4702 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6829 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7084 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7448 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7496 - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7906 - |
Information
Published : 2004-07-27 04:00
Updated : 2024-11-20 23:49
NVD link : CVE-2004-0727
Mitre link : CVE-2004-0727
CVE.ORG link : CVE-2004-0727
JSON object : View
Products Affected
microsoft
- internet_explorer
CWE