Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2003-0815
Description:Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and read arbitrary files by (1) modifying the createTextRange method and using CreateLink, as demonstrated using LinkillerSaveRef, LinkillerJPU, and Linkiller, or (2) modifying the createRange method and using the FIND dialog to select text, as demonstrated using Findeath, aka the "Function Pointer Override Cross Domain" vulnerability.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2003-0815
BugTraq ID: 9014
http://www.securityfocus.com/bid/9014
Bugtraq: 20030910 MSIE->Findeath: break caller-based authorization (Google Search)
http://marc.info/?l=bugtraq&m=106322542104656&w=2
Bugtraq: 20030910 MSIE->LinkillerJPU:another caller-based authorization(is broken). (Google Search)
http://marc.info/?l=bugtraq&m=106321757619047&w=2
Bugtraq: 20030910 MSIE->LinkillerSaveRef:another caller-based authorization (Google Search)
http://www.derkeiler.com/Mailing-Lists/securityfocus/bugtraq/2003-09/0150.html
Bugtraq: 20030911 LiuDieYu's missing files are here. (Google Search)
http://www.securityfocus.com/archive/1/337086
Computer Incident Advisory Center Bulletin: O-021
http://www.ciac.org/ciac/bulletins/o-021.shtml
http://www.safecenter.net/UMBRELLAWEBV4/Linkiller/Linkiller-Content.HTM
http://www.safecenter.net/UMBRELLAWEBV4/LinkillerJPU/LinkillerJPU-Content.HTM
http://www.safecenter.net/UMBRELLAWEBV4/LinkillerSaveRef/LinkillerSaveRef-Content.HTM
Microsoft Security Bulletin: MS03-048
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2003/ms03-048
http://www.osvdb.org/7888
http://www.osvdb.org/7889
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A351
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A352
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A353
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A356
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A357
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A359
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A472
http://securitytracker.com/id?1007687
http://secunia.com/advisories/10192
XForce ISS Database: ie-pointer-zone-bypass(13676)
https://exchange.xforce.ibmcloud.com/vulnerabilities/13676




© 1998-2025 E-Soft Inc. All rights reserved.