[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2006-1192Date: (C)2006-04-11   (M)2023-12-22


Microsoft Internet Explorer 5.01 through 6 allows remote attackers to conduct phishing attacks by spoofing the address bar and other parts of the trust UI via unknown methods that allow "window content to persist" after the user has navigated to another site, aka the "Address Bar Spoofing Vulnerability." NOTE: this is a different vulnerability than CVE-2006-1626.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 2.6
Exploit Score: 4.9
Impact Score: 2.9
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: HIGH
Authentication: NONE
Confidentiality: NONE
Integrity: PARTIAL
Availability: NONE
  
Reference:
SECTRACK-1015899
BID-17460
SECUNIA-18957
SREASON-670
ADV-2006-1318
MS06-013
ie-browser-window-spoofing(25557)
oval:org.mitre.oval:def:1336
oval:org.mitre.oval:def:1498
oval:org.mitre.oval:def:1645
oval:org.mitre.oval:def:1725
oval:org.mitre.oval:def:1740

CPE    2
cpe:/a:microsoft:internet_explorer:6:sp1
cpe:/h:canon:network_camera_server_vb101
CWE    1
CWE-20
OVAL    5
oval:org.mitre.oval:def:1725
oval:org.mitre.oval:def:1740
oval:org.mitre.oval:def:1498
oval:org.mitre.oval:def:1645
...

© SecPod Technologies