ImageMap URL Spoof Vulnerability in Microsoft Internet Explorer
Reported May 18, 2004, by Paul Kurczaba
VERSIONS AFFECTED
Microsoft Internet Explorer (IE) 5.0 and 6.0
DESCRIPTION
A vulnerability in IE 5.0 and 6.0 could let a potential attacker spoof the URL displayed in the lower left corner of the IE window by using a specially coded image map.
DEMONSTRATION
The discoverer posted the following code as proof of concept and has made a demonstration available on his Web site.
Source: Winnetmag.com