IE7 exploit pool
Moderators: snarkout, Patrick, dann
IE7 exploit pool
Now that IE7 is officially out we have a pool at work to guess when the first major exploit hits.
I give it 4 weeks
I give it 4 weeks
Ego contemno licentia
IE7
Judland gets the bet. This IS a big deal Pat. The bug can cause your paypal signin and password to be revealed as well as credit card info.
http://secunia.com/advisories/22477/
Personally, I don't call this a low bug. It's a critical one. Is it one people are exploiting? Well, probably now that it's been a while.
http://secunia.com/advisories/22477/
Personally, I don't call this a low bug. It's a critical one. Is it one people are exploiting? Well, probably now that it's been a while.
Re: IE7
From what I've read the bug is actually in Outlook Express, but can only be exploited through IE with a redirect. Seems like that's still under debate, though. It's not strictly an IE7 bug.gorkon wrote:Judland gets the bet. This IS a big deal Pat. The bug can cause your paypal signin and password to be revealed as well as credit card info.
http://secunia.com/advisories/22477/
Personally, I don't call this a low bug. It's a critical one. Is it one people are exploiting? Well, probably now that it's been a while.
I'm guessing they've marked it "less critical" because there's an easy workaround (disable active scripting).