Rediff Bol's ActiveX control allows any webpage to download and spawn any file.
24a25f9b3eeffdc6f98bab19ef649c8fa428cdd004a49e900ac906cc72db1814
Rediff Bol's ActiveX control allows a webpage to read the user's Windows Address Book (WAB) contacts. Version 7.0 is affected.
ed16e9cd4a0a461f65e16cd6971b90b7c52e34664b75db20d8cac3a78f0aed87
Indiatimes Messenger version 6.0 is susceptible to a buffer overflow attack.
a0a055dc447f5b71a1b2ed06916e8652bfe0c822073fd41d1bb108ebb344d38e
MSN Messenger password decrypter for Microsoft Windows XP and 2003. Includes the entropy value thrown in from the credui.dll GUID.
73d3162712d5b43af42864df4b5146f3dfcd067cb576e0530d1faa70df6ffa24
Pointing a link to the URI file://!:\, replacing ! with the ascii value 0xA0, causes IE6 under SP1 to crash, the illegal op occuring in user32.dll.
eee768ff62c10dcd07482246618a9175875f3e6ccf2c2eb461d5c695ccff7c9d
A security vulnerability in Internet Explorer allows remote attackers to discover what software is installed on the remote computer by testing for the existence of certain files.
a81b0921a0baf46ab59d80d080a461e860a06714e7836a306ff2fec429cc6662
Internet Explorer 6.0 SP1 + Win2k SP4 (up to date) local file detection advisory and exploit which uses the sysimage:// protocol to allow websites to determine which software is installed. Online demonstration available here.
d04eeb9baa76349ffdd543832c8a102a1200881700755affafb7ea344f65c2e6
Multiple filter bypass vulnerabilities have been discovered in rediffmail.com.
60835bc34e6715cb1ccaea02926f87509ad74ac27b49ff275d9a0384cbfbcad7
Microsoft's Windows Script Engine within the Windows operating system has a flaw in its implementation of jscript.dll. When a malicious web page is loaded with code that points to self.window() random errors and lock ups occur in Internet Explorer. Tested against IE versions: 5.01 (Win2000), 5.5(Win98SE), 6.0(WinXP). Vulnerable jscript.dll versions: 5.1.0.8513 (Win2000), 5.5.0.8513 (Win98SE), 5.6.0.6626 (WinXP Pro), 5.6.0.8513 (Win2000).
47ac1d606f466452571ac90777b13a37b24d69838cf1609016f6c7dfe9905845