Multiple_Web_Browsers_Window_Injection_Vulnerability_attack

Strike ID:
G04-3w301
CVSS:
7.5 (AV:N/AC:L/Au:N/C:P/I:P/A:P)
False Positive:
f
Variants:
1
Year:
2004

Description

This strike exploits a vulnerability in the way multiple browsers reference a popup window. A malicious web site can replace content of another site's popup window if the target name of the window is known. This can be used to spoof the content of a popup window opened from a trusted web site.

CVE

References

Bid