Retrieving Information on Local Files in IE Explains how the IMG element's dynsrc attribute can be exploited to test the existence of, find the size of, find the date last updated/modified of, and the creation date of, an arbitrary local file. By GreyMagic Security. http://sec.greymagic.com/adv/gm003-ie/ Greymagic.com~Site InfoWhoisTrace RouteRBL Check
The Register: Three New MS Security Holes - Two Nasty Includes: MSXML may ignore IE security zone settings during a request for data from a Web site; and a VBscript problem which allows an attacker to read files on a victim's local drive, or eavesdrop on his browsing session. http://www.theregister.co.uk/2002/02/22/three_new_ms_security_holes/ Theregister.co.uk~Site InfoWhoisTrace RouteRBL Check