Cybertrion Systems

[1/5] Internet Explorer “OnKeyDown” Event Focus Weakness

September 28th, 2007 by
[1/5] Internet Explorer “OnKeyDown” Event Focus Weakness

:Ronald van den Heetkamp has discovered a weakness in Internet Explorer, which potentially can be exploited by malicious people to disclose sensitive information.For more information:SA25904The weakness is confirmed in Internet Explorer 6.0 on a fully-patched Windows XP SP2 system. Other versions may also be affected.Solution:Disable Active Scripting support.Do not enter suspicious text when visiting untrusted web sites.Provided and/or discovered by:Ronald van den HeetkampOriginal Advisory:http://www.0×000000.com/index.php?i=437Other References:SA25904:http://secunia.com/advisories/25904/

Original post by pooja

[1/5] Internet Explorer “OnKeyDown” Event Focus Weakness

Related Articles:
  • [1/5] Firefox “OnKeyDown” Event Focus Weakness
  • [1/5] Microsoft Internet Explorer FTP Credentials Exposure
  • [1/5] Microsoft Internet Explorer 7 HTTP Basic Authentication IDN Spoofing
  • [2/5] Internet Explorer Unspecified Address Bar Spoofing Vulnerability
  • [4/5] Internet Explorer File Download Handling Memory Corruption


  • Posted in Advisories - Exploits | | [1/5] Internet Explorer “OnKeyDown” Event Focus Weakness

    << [3/5] ICEOWS IceGUI.DLL ACE Archive Processing Buffer Overflow | [2/5] Mandriva update for t1lib >>