Web Hack List

Top 10 winner

Internet Explorer 7 "mhtml:" Redirection Information Disclosure

Secunia advisory SA22477 (2006-10-19, Less critical, unpatched at publication) on Internet Explorer 7. Mishandling of redirections for URLs using the mhtml: URI handler lets a remote site read documents served from another origin. Confirmed on a fully patched IE 7.0 on Windows XP SP2; the only offered mitigation is disabling active scripting.

Record

Published by
Secunia
Date
Format
Advisory
Topic
Other

In the archive

Tags

This page is the archive's own catalogue record. The research is the work of Secunia, first published at the original source. Preserved copies are kept so the citation survives its host; this one was last captured on .