My First Car, Honda City 2009
 

JavaScript Flaw Affected Multiple Browsers

Filed in: Security — June 23rd, 2005

advertisement

Secunia Research has discovered a vulnerability in various browsers, which can be exploited by malicious web sites to spoof dialog boxes.

JavaScript Flaw Affected Multiple Browsers

The problem is that JavaScript dialog boxes do not display or include their origin, which allows a new window to open e.g. a prompt dialog box, which appears to be from a trusted site.

[ Read and test your browser ]

Solution: Do not browse untrusted web sites while browsing trusted sites.

For Opera users upgrade to version 8.01 which has been patched. Microsoft has no plan to distribute a fix [PCWorld.com]. Hopefully, Firefox 1.0.5(currently test build) will fix the bug too.

Updates: I tested Firefox 1.0.5 test build, it is affected by the Javascript flaw as well. :???: Guess the developement team will patch it before the final release.

Bookmark and Share

Read also:

What do you think? 2 Responses to “JavaScript Flaw Affected Multiple Browsers”

Comments Feed | TrackBack URL
  1. #1
    dannyFoo Says:

    When you mean dialogue boxes, do you mean those that when you hover and there’s an ad displayed..?

  2. #2
    LcF Says:

    it is the dialog created from the javascript prompt() function.

Comments are closed. Submit your comment here