J-Security Center

Title: MS IE 5.01 JSObject Cross-Frame Vulnerability

Severity: MODERATE

Description:

The cross-frame security model of Internet Explorer 5.01 can be circumvented through the use of a Java applet. If the applet is passed a parameter containing javascript code in the form of a 'javascript:' URL, the setMember method of the JSObject class can be used to change the 'href' of the DOM (Document Object Model) of another frame or window to that URL. The browser will then execute the javascript in the security context of the original contents of the other window or frame.

Affected Products:

  • Microsoft Internet Explorer 5.0.1
  • Microsoft Internet Explorer for Unix 5.0
  • Microsoft Windows ME

References:

Juniper Networks provides this content via a wide variety of sources and production methods. If notified of errors or omissions in the content of this page, Juniper Networks, at its discretion, will modify or remove the page or leave the content as is, depending on various factors including but not limited to the reputation and authority of the party providing the notification. Please use the contact information displayed elsewhere on this page to report any errors or omissions regarding the content on this page.