Frame Injection

A frame injection attack is an attack on Internet Explorer 5, Internet Explorer 6 and Internet Explorer 7 to load arbitrary code in the browser. This attack is caused by Internet Explorer not checking the destination of the resulting frame, therefore allowing arbitrary code such as Javascript or VBScript. This also happens when code gets injected through frames due to scripts not validating their input. This other type of frame injection affects all browsers and scripts that do not validate untrusted input.

Famous quotes containing the word frame:

    The heroes and discoverers have found true more than was previously believed, only when they were expecting and dreaming of something more than their contemporaries dreamed of, or even themselves discovered, that is, when they were in a frame of mind fitted to behold the truth. Referred to the world’s standard, they are always insane. Even savages have indirectly surmised as much.
    Henry David Thoreau (1817–1862)