Logo Background RSS

Advertisement

Lotus Notes RSS reader unsafe (vowe dot net)

  • Written by admin | No Comments Comments
    Last Updated: September 18th, 2009

    The vulnerability is universal. You don’t need any exploit. Notes downloads HTML code embedded into the RSS feed, dumps it into the file system and asks Internet Explorer to interpret it. Since the file is local, IE treats it as local code. From there you can do pretty much everything that is possible with Javascript, Flash or other embedded code. Interesting time line: 2009/04/07 Identification…

    Source : vowe dot net (subscribe)

    Explore : Internet, Technology

Advertisement

Leave a Comment