Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News October 1, 2008 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:7906 Date: 2007-01-22
Title: IE v6.0 Similar Method Name Redirection Cross Domain Vulnerability
Description: Microsoft Internet Explorer 6.0.2800.1106 on Microsoft Windows XP SP2, and other versions including 5.01 and 5.5, allows remote web servers to bypass zone restrictions and execute arbitrary code in the local computer zone by redirecting a function to another function with the same name, as demonstrated by SimilarMethodNameRedir, aka the "Similar Method Name Redirection Cross Domain Vulnerability."
Version: 3 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2004-0727
Family: windows
Platform(s): Microsoft Windows XP Product(s): Microsoft Internet Explorer
Definition Synopsis:

OVAL is CVE Compatible