Netscape Communicator 4.51 allows sniffing of URLs from another

From: Georgi Guninski (joroat_private)
Date: Thu Mar 25 1999 - 10:07:52 PST

  • Next message: Ben Cantrick (Macky Stingray): "ADM Worm. Worm for Linux x86 found in wild."

    There is a bug in Netscape Communicator 4.51,4.5/Win95, 4.08/WinNT
    (probably others?),
    which allows sniffing URLs from another window.
    The exploit uses the ability to execute JavaScript code from specially
    designed
    URLs in the javascript console window, when an error is deliberately
    invoked.
    
    Demonstration and source is available at:
    http://www.nat.bg/~joro/b11.html
    
    (The exploit does not work if you are behind some versions of a squid
    proxy.
    If you do not see your URL in a message box, try reloading the main
    page).
    
    Workaround: Disable JavaScript.
    
    Regards,
    Georgi Guninski
    



    This archive was generated by hypermail 2b30 : Fri Apr 13 2001 - 14:39:51 PDT