Hello Ben Mesander,

I cann't confirm this bug.

17.04.00 3:09, you wrote: Reappearance of an old IE security bug;

B> I have found a way to have a Java applet open a connection to an arbitrary
B> host and violate the Java security model in Internet Explorer 5. This is a bug
B> I first discovered in 1997, and Microsoft fixed it then. It seems to
B> have reappeared in the latest IE 5.


Under  MSIE 5.01 (5.00.2919.6307) WinNT 4.0/SP6a, Java Security is set
to "high" applet generates security exception.


B> This vulnerability allows malicious websites to download a java applet to
B> a user's desktop, and use the desktop to send content from sites inside a
B> firewall to the malicious webserver or another host.

B> http://www.hungry.com/~ben/msie_bug/

B> --Ben

  +=-=-=-=-=-=-=-=-=+
  |Vladimir Dubrovin|
  | Sandy Info, ISP |
  +=-=-=-=-=-=-=-=-=+

Reply via email to