Advertisement

First IE7 Specific Vulnerability Discovered

Secunia has found the first IE7 specific vulnerability which allows URL's to be spoofed.

Advertisement
Jayesh Mansukhani|Oct 27, 2006, 14:14:25 IST

Looks like IE's history of bugs is coming back to haunt IE7. Released just last week it was hit by reports of a bug. It was eventually proved that the bug was related more to Outlook Express than IE. Now, the first IE specific vulnerability has been found. The Register has reported that the bug was found, by security group Secunia and was later confirmed by Microsoft. Under this new bug, which deals with popup windows, it becomes possible to display spoofed addresses.

Advertisement

Thanks to this, a malicious hacker can create a specifically made URL with special ASCII characters that may be part of the website address. If a user clicks on this URL it opens up the possibility, that Trojan or spyware may be loaded on their machine. While this may sound a little ominous it's good to note that Secunia has rated the issue as 'less critical' which is its lowest security rating.

news-analysisMore from News Analysis

Microsoft has added that no attacks are known for this bug yet, and that if the phishing filter that ships with IE7 is enabled, the chances of falling prey to a malformed URL will fall drastically.

Handpicked stories, in your inbox
Global stories. Indian perspective. Zero noise.
No Spam. Unsubscribe Any Time.
First Published:Oct 27, 2006, 14:14:25 IST
Advertisement
Advertisement
Trending Stories

China's Kimi K3 challenges US AI leaders with frontier-level performance at lower cost

Chinese artificial intelligence startup Moonshot AI has unveiled its latest open-weight AI model, Kimi K3, with early results suggesting it could compete with some of the world's most advanced AI systems developed by leading US companies
2 min read
Advertisement
Advertisement
Up Next