SecNiche : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos Vulnerability



Advisory : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos Vulnerability

Dated : 15 August 2007

Severity : Critical

Explanation :

The vulnerability persists in the popup blocker functioning to allow specific websites to execute
popup in the running instance of Internet Explorer. An attacker can easily exploits it by enabling
a browser to run a malicious script in the context of Internet Explorer. The script manipulates the
registry entries for specific websites through Javascript. It adds fake or malicious websites as an
allowed websites in the pop up blocker. The cause user visiting a untrusted website or any othe
malicious cause.

Detail Advisory :
http://www.secniche.org/advisory/Internet_Pop_Phish_Dos_Adv.pdf
http://www.secniche.org/adv.html


Proof of Concept : Level 1 Infection Test
http://www.secniche.org/misc/ie_pop_by_level1_test.zip

Test run fine locally as well with Web server [IIS] automated server object calling. Infection
through Active X Object.

Regards
AKS aka 0kn0ck
http://www.secniche.org



Relevant Pages

  • [Full-disclosure] SecNiche : Microsoft Internet Explorer Pop up Blocker Bypassing and Dos Vulner
    ... Microsoft Internet Explorer Pop up Blocker Bypassing and Dos ... The vulnerability persists in the popup blocker functioning to allow ... registry entries for specific websites through Javascript. ...
    (Full-Disclosure)
  • Re: Crashes With ERROR Message
    ... Then When I Could Not Send Email to CONACTS on Websites Like ... "How to determine which version of Internet Explorer is installed". ... So I Clicked MICROSOFT WINDOWS. ... Thats Why I Should UN INSTALL IE 6 & Re Install IE 7 ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • RE: Cookies in IE 7.0
    ... Click on Advanced Tab and Under: ... Reset Internet Explorer settings: ... Also look in the Blocked/Allowed cookies they may be blocked so remove the ... Don't forget IE7 have a Pop-Up blocker so set that to low or medium to allow ...
    (microsoft.public.windowsxp.help_and_support)
  • Re: No version information
    ... Internet Explorer "About" box is completely blank; ... Windows XP Shell/User ... Im having trouble accessing secure websites. ... Still same issue with secure sites and version info. ...
    (microsoft.public.windows.inetexplorer.ie6.browser)
  • Re: Cant find pop-up blocker options
    ... When I'm in Internet Explorer and select Help, ... I am still not able to get into certain websites. ... workflow window (not ... three ways to resolve ...
    (microsoft.public.windows.inetexplorer.ie6.browser)