Open Vulnerability and Assessment Language (OVAL)
Contact Us Downloads News July 2, 2009 Search
link to OVAL home page

View Definition

Definition Id: oval:org.mitre.oval:def:6829 Date: 2007-01-13
Title: IE v6.0,SP1 Similar Method Name Redirection Cross Domain Vulnerability
Description: Microsoft Internet Explorer 6.0.2800.1106 on Microsoft Windows XP SP2, and other versions including 5.01 and 5.5, allows remote web servers to bypass zone restrictions and execute arbitrary code in the local computer zone by redirecting a function to another function with the same name, as demonstrated by SimilarMethodNameRedir, aka the "Similar Method Name Redirection Cross Domain Vulnerability."
Version: 3 Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2004-0727
Family: windows
Platform(s): Microsoft Windows ME
Microsoft Windows NT
Microsoft Windows XP
Product(s): Microsoft Internet Explorer
Definition Synopsis:

OVAL is CVE Compatible