Nice new IE vulnerability...

konichiwa

Lifer
Oct 9, 1999
15,077
2
0
address bar...

Thanks MS for yet another bug...
rolleye.gif
 

fs5

Lifer
Jun 10, 2000
11,774
1
0
Bad Request (Invalid URL)

another reason to switch to firebird :beer:
 

samgau

Platinum Member
Oct 11, 1999
2,403
0
0
Opera gives a warning message...... and after that it displays the address with a weird symbol in it... so no..opera is not fooled...
 

konichiwa

Lifer
Oct 9, 1999
15,077
2
0
Originally posted by: Bassyhead
Probably isolated to IE. Opera isn't fooled either.

You think? Hence the reason the title of this thread is

Nice new IE vulnerability...
 

ATLien247

Diamond Member
Feb 1, 2000
4,597
0
0
Great!

Now I have to be even more careful with the links that people post...

(Although, I did notice that the spoofed URLs don't have a '/' on the end.)
 

BillGates

Diamond Member
Nov 30, 2001
7,388
2
81
I love how Firebird users like to laugh at IE... Yet they don't realize that 90%+ of the world uses IE and as such a lot more collective time is spent trying to exploit IE over any other browser. I guarantee if hackers/crackers/etc gave a flying fsck about other browsers we'd see a lot more exploits for them too. This goes for the Windows vs. Apple or Linux arguments as well.
 

theNEOone

Diamond Member
Apr 22, 2001
5,745
4
81
Originally posted by: BillGates
I love how Firebird users like to laugh at IE... Yet they don't realize that 90%+ of the world uses IE and as such a lot more collective time is spent trying to exploit IE over any other browser. I guarantee if hackers/crackers/etc gave a flying fsck about other browsers we'd see a lot more exploits for them too. This goes for the Windows vs. Apple or Linux arguments as well.
shut up billy.


=|
 

Snapster

Diamond Member
Oct 14, 2001
3,916
0
0
So the IE only vulnerability is where.......

As far as you can see, the %00 code just stops the rest of the address being printed in IE. Both IE AND Mozilla Firebird goto the same page when clicking on the link, why does it even goto the secunia site at all (In firebird as well, not 'just' IE) if it's an invalid URL.
 

ViRGE

Elite Member, Moderator Emeritus
Oct 9, 1999
31,516
167
106
Sonofa... I'll give it 30 minutes until someone uses this to do a Goatse trick, and 1 day until a new PayPal scam is put forth.
 

theNEOone

Diamond Member
Apr 22, 2001
5,745
4
81
Originally posted by: ViRGE
Sonofa... I'll give it 30 minutes until someone uses this to do a Goatse trick, and 1 day until a new PayPal scam is put forth.
they're probably already floating around.


=|
 

XZeroII

Lifer
Jun 30, 2001
12,572
0
0
Originally posted by: konichiwa
address bar...

Thanks MS for yet another bug...
rolleye.gif

write your own 100% foolproof browser then. Being a software engineer is probably one of the toughest jobs in the world, so unless you actually know what you are talking about, STFU. You can post vulns, but check your attitude at the door.
 

konichiwa

Lifer
Oct 9, 1999
15,077
2
0
Originally posted by: XZeroII
Originally posted by: konichiwa
address bar...

Thanks MS for yet another bug...
rolleye.gif

write your own 100% foolproof browser then. Being a software engineer is probably one of the toughest jobs in the world, so unless you actually know what you are talking about, STFU. You can post vulns, but check your attitude at the door.

Hahaha
 

Sid59

Lifer
Sep 2, 2002
11,879
3
81
that's sorta scary. im glad my gf loves firebird. hate to see her get fooled. other friends, have not seen the light.