Internet Explorer 5/6 file:// Request Zone Bypass Vulnerability

Javier Perez 09.05.2003 Verified
Remote Exploits Windows

Exploit Code

source: http://www.securityfocus.com/bid/7539/info

Internet Explorer is reported to be vulnerable to a zone bypass issue. Allegedly, if Internet Explorer attempts to open a web page containing numerous 'file://' requests each contained in a separate Iframe, the requested file will eventually be executed in the Local Computer zone. 

https://github.com/offensive-security/exploit-database-bin-sploits/raw/master/sploits/22575.rar (dmz.rar Password: zones)