source: https://www.securityfocus.com/bid/1837/info A malicious website operator may be able to obtain cookies from a target system browsing with Sun HotJava Browser. The Document Object Model (DOM) of arbitrary URLs can be accessed if a specially formed javascript is launched from a named window. Cookies that may contain sensitive information can be acquired through this method. Demo - HotJava Browser 3.0 JavaScript security vulnerability Demo - HotJava Browser 3.0 JavaScript security vulnerability
This page shows the cookie and the first link from from www.sun.com in 10 seconds
Written by Georgi Guninski
(C) Copyright 2000 Georgi Guninski

| Home | Internet Explorer | Windows 2000 | AIX | Netscape | Greets | More... |