• We’re currently investigating an issue related to the forum theme and styling that is impacting page layout and visual formatting. The problem has been identified, and we are actively working on a resolution. There is no impact to user data or functionality, this is strictly a front-end display issue. We’ll post an update once the fix has been deployed. Thanks for your patience while we get this sorted.

Nice new IE vulnerability...

address bar...

Thanks MS for yet another bug...
rolleye.gif
 
Opera gives a warning message...... and after that it displays the address with a weird symbol in it... so no..opera is not fooled...
 
Great!

Now I have to be even more careful with the links that people post...

(Although, I did notice that the spoofed URLs don't have a '/' on the end.)
 
I love how Firebird users like to laugh at IE... Yet they don't realize that 90%+ of the world uses IE and as such a lot more collective time is spent trying to exploit IE over any other browser. I guarantee if hackers/crackers/etc gave a flying fsck about other browsers we'd see a lot more exploits for them too. This goes for the Windows vs. Apple or Linux arguments as well.
 
Originally posted by: BillGates
I love how Firebird users like to laugh at IE... Yet they don't realize that 90%+ of the world uses IE and as such a lot more collective time is spent trying to exploit IE over any other browser. I guarantee if hackers/crackers/etc gave a flying fsck about other browsers we'd see a lot more exploits for them too. This goes for the Windows vs. Apple or Linux arguments as well.
shut up billy.


=|
 
So the IE only vulnerability is where.......

As far as you can see, the %00 code just stops the rest of the address being printed in IE. Both IE AND Mozilla Firebird goto the same page when clicking on the link, why does it even goto the secunia site at all (In firebird as well, not 'just' IE) if it's an invalid URL.
 
Sonofa... I'll give it 30 minutes until someone uses this to do a Goatse trick, and 1 day until a new PayPal scam is put forth.
 
Originally posted by: ViRGE
Sonofa... I'll give it 30 minutes until someone uses this to do a Goatse trick, and 1 day until a new PayPal scam is put forth.
they're probably already floating around.


=|
 
Originally posted by: konichiwa
address bar...

Thanks MS for yet another bug...
rolleye.gif

write your own 100% foolproof browser then. Being a software engineer is probably one of the toughest jobs in the world, so unless you actually know what you are talking about, STFU. You can post vulns, but check your attitude at the door.
 
Originally posted by: XZeroII
Originally posted by: konichiwa
address bar...

Thanks MS for yet another bug...
rolleye.gif

write your own 100% foolproof browser then. Being a software engineer is probably one of the toughest jobs in the world, so unless you actually know what you are talking about, STFU. You can post vulns, but check your attitude at the door.

Hahaha
 
that's sorta scary. im glad my gf loves firebird. hate to see her get fooled. other friends, have not seen the light.
 
Back
Top