TUCoPS :: Browsers :: bt606.txt

MSIE patched&undisclosed XSS vuln

OS:Windows XP Professional

Browser: MS Internet Explorer 6.0.2600.0000.xpclient.01087-1148

(without any patch)

(note: it doesn't work on the patched MSIE) 



or ==> "AutoScanJPU-MyPage" section


window.external.AutoScan method can navigate other windows to somewhere, 

and it doesn't filter Javascript-protocol url.

does anyone here know other vulnz patched silently? 

