help:// protocol in Windows XP Prof
From: Bartosz Kwitkowski (bartosz_at_wb.pl)
Date: 07/06/04
- Previous message: bil_912: "status-bar SHATTER attack"
- Next in thread: NETKOJI: "Re: help:// protocol in Windows XP Prof"
- Reply: NETKOJI: "Re: help:// protocol in Windows XP Prof"
- Reply: Derek Kwan: "Re: help:// protocol in Windows XP Prof"
- Reply: Jordan Cole (stilist): "Re: help:// protocol in Windows XP Prof"
- Maybe reply: Bartosz Kwitkowski: "Re: help:// protocol in Windows XP Prof"
- Maybe reply: Weltha, Nick [ADM]: "RE: help:// protocol in Windows XP Prof"
- Maybe reply: Calderon, Juan Carlos (GE Commercial Finance, NonGE): "RE: help:// protocol in Windows XP Prof"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: 6 Jul 2004 09:36:16 -0000 To: vuln-dev@securityfocus.com('binary' encoding is not supported, stored as-is)
There is funny thing in Internet Explorer 6.0 - Windows XP Professional (fully patched).
When you are writing address in IE you can replace http:// by help://
example:
http://wb.pl/bartosz = help://wb.pl/bartosz
and than hit <ENTER>... Page will open...
other...
help://www.securityfocus.com - looks funny, isn't? :-)
when IE opens page changes help:// to http://
BUT, BUT,
when you are create hyperlink check
it won't work - IE says syntax error...
I'm trying to exploit this...
Best regards,
Bartosz Kwitkowski
- Previous message: bil_912: "status-bar SHATTER attack"
- Next in thread: NETKOJI: "Re: help:// protocol in Windows XP Prof"
- Reply: NETKOJI: "Re: help:// protocol in Windows XP Prof"
- Reply: Derek Kwan: "Re: help:// protocol in Windows XP Prof"
- Reply: Jordan Cole (stilist): "Re: help:// protocol in Windows XP Prof"
- Maybe reply: Bartosz Kwitkowski: "Re: help:// protocol in Windows XP Prof"
- Maybe reply: Weltha, Nick [ADM]: "RE: help:// protocol in Windows XP Prof"
- Maybe reply: Calderon, Juan Carlos (GE Commercial Finance, NonGE): "RE: help:// protocol in Windows XP Prof"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|