Internet Explorer Navigation Cancel Page XSS (About FTP)

Strike ID:
E07-1co01
CVSS:
4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
False Positive:
f
Variants:
1
Year:
2007

Description

This strike exploits a cross-site scripting flaw in Internet Explorer 7. This flaw can be used by an attacker to spoof the displayed document location and run javascript code in the context of the about:cancel context.

CVE

Bid