Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2003-1027
Description:Internet Explorer 5.01 through 6 SP1 allows remote attackers to direct drag and drop behaviors and other mouse click actions to other windows by using method caching (SaveRef) to access the window.moveBy method, which is otherwise inaccessible, as demonstrated by HijackClickV2, a different vulnerability than CVE-2003-0823, aka the "Function Pointer Drag and Drop Vulnerability."
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2003-1027
Bugtraq: 20031125 HijackClickV2 - a successor of HijackClick attack (Google Search)
http://marc.info/?l=bugtraq&m=106979479719446&w=2
Bugtraq: 20031201 Comments on 5 IE vulnerabilities (Google Search)
http://marc.info/?l=bugtraq&m=107038202225587&w=2
Cert/CC Advisory: TA04-033A
http://www.us-cert.gov/cas/techalerts/TA04-033A.html
CERT/CC vulnerability note: VU#413886
http://www.kb.cert.org/vuls/id/413886
http://www.safecenter.net/UMBRELLAWEBV4/HijackClickV2
Microsoft Security Bulletin: MS04-004
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-004
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A527
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A529
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A530
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A531
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A532
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A534
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A629
http://www.securitytracker.com/id?1006036
XForce ISS Database: ie-method-perform-actions(13844)
https://exchange.xforce.ibmcloud.com/vulnerabilities/13844




© 1998-2025 E-Soft Inc. All rights reserved.