View Definition

Definition Id: oval:org.mitre.oval:def:225 Version: 1  Last Modified: 2004-01-27
Title: IE v5.5 Frames Cross-site Scripting Vulnerability
Description: Cross-site scripting vulnerability (XSS) in Internet Explorer 5.01 through 6.0 allows remote attackers to read and execute files on the local system via web pages using the <frame> or <iframe> element and javascript, aka "Frames Cross Site Scripting," as demonstrated using the PrivacyPolicy.dlg resource.
Family: windows Class: vulnerability
Status: ACCEPTED Reference(s): CVE-2002-1187
Platform(s): Microsoft Windows 2000 Product(s): Microsoft Internet Explorer
Definition Synopsis: