CVE-2000-0958
HotJava Browser 3.0 - Unauthenticated DOM Access via JavaScript URL in Named Window
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2000-0958. PoCs published by Georgi Guninski.
AI-analyzed exploit summary This exploit demonstrates a JavaScript security vulnerability in Sun HotJava Browser 3.0, allowing a malicious website to access cookies and DOM elements from arbitrary URLs via a named window. The PoC uses a timed JavaScript payload to extract sensitive information from www.sun.com.
Description
HotJava Browser 3.0 allows remote attackers to access the DOM of a web page by opening a javascript: URL in a named window.
Exploits (1)
This exploit demonstrates a JavaScript security vulnerability in Sun HotJava Browser 3.0, allowing a malicious website to access cookies and DOM elements from arbitrary URLs via a named window. The PoC uses a timed JavaScript payload to extract sensitive information from www.sun.com.