Windows 7 Forums Search
Welcome to Windows 7 Forums. Our forum is dedicated to helping you find solutions with any problems, errors or issues you are experiencing with Windows 7. The Windows 7 forum also covers news and updates and has an extensive Windows 7 tutorial section that covers a wide range of tips and tricks.


Windows 7 - Guidance on Internet Explorer XSS Filter.

 
04-20-2010   #1
JMH


Win 7 Ultimate 64-bit. SP1.
 
 

Guidance on Internet Explorer XSS Filter.

Quote:
The XSS Filter related Blackhat EU presentation discussed a vulnerability that was previously disclosed and addressed in the January security update to Internet Explorer (MS10-002). This attack scenario involved modified HTTP responses, enabling XSS on sites that would not otherwise be vulnerable.

An additional update tothe IE XSS Filteris currently scheduled for release in June. This change will address a SCRIPT tag attack scenario described in the Blackhat EU presentation. This issue manifests when malicious script can “break out” from within a construct that is already within an existing script block. While the issue identified and addressed in MS10-002 was identified to exist on high-profile web sites, thus far real-world examples of the SCRIPT tag neutering attack scenario have been hard to come by.
Source -
The Microsoft Security Response Center (MSRC) : Guidance on Internet Explorer XSS Filter

My System SpecsSystem Spec
Reply

 Guidance on Internet Explorer XSS Filter. problems?



Thread Tools



Similar Threads for: Guidance on Internet Explorer XSS Filter.
Thread Forum
Internet Explorer SmartScreen Filter - Turn On or Off Tutorials
InPrivate Filter Manager for Internet Explorer 8 Browsers & Mail
Internet Explorer - SmartScreen Filter - Prevent Bypassing Warnings Tutorials
Guidance on Internet Explorer XSS Filter News
AC3 Filter Configuration Internet Explorer Removal? Software


All times are GMT -5. The time now is 02:24 AM.



Windows 7 Forums is an independent web site and has not been authorized,
sponsored, or otherwise approved by Microsoft Corporation.
"Windows 7" and related materials are trademarks of Microsoft Corp.
© Designer Media Ltd
  

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30