Microsoft Internet Explorer 6.0 and 7.0 allows remote attackers to fill Zones with arbitrary domains using certain metacharacters such as wildcards via JavaScript, which results in a denial of service (website suppression and resource consumption), aka "Internet Explorer Zone Domain Specification Dos and Page Suppressing". NOTE: this issue has been disputed by a third party, who states that the zone settings cannot be manipulated
| Software | From | Fixed in |
|---|---|---|
| microsoft / ie | 6.0-sp1 | 6.0-sp1.x |
| microsoft / ie | 6.0-sp2 | 6.0-sp2.x |
| microsoft / internet_explorer | 6.0 | 6.0.x |
| microsoft / internet_explorer | 7.0 | 7.0.x |
| microsoft / internet_explorer | 7.0-beta1 | 7.0-beta1.x |
| microsoft / internet_explorer | 7.0-beta2 | 7.0-beta2.x |
| microsoft / internet_explorer | 7.0-beta3 | 7.0-beta3.x |