E07-1co01
CVSS:
4.3 (AV:N/AC:M/Au:N/C:N/I:P/A:N)
False Positive:
f
Variants:
1
Year:
2007
Description
This strike exploits a cross-site scripting flaw in Internet Explorer 7. This flaw
can be used by an attacker to spoof the displayed document location and run
javascript code in the context of the about:cancel context.