[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

249966

 
 

909

 
 

195636

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

IE v6.0,SP1 Improper URL Canonicalization Vulnerability

ID: oval:org.mitre.oval:def:513Date: (C)2004-02-03   (M)2021-09-11
Class: VULNERABILITYFamily: windows




Internet Explorer 5.01 through 6 SP1 allows remote attackers to spoof the domain of a URL via a "\\\%01" character before an @ sign in the user@domain portion of the URL, which hides the rest of the URL, including the real site, in the address bar, aka the "Improper URL Canonicalization Vulnerability."

Platform:
Microsoft Windows ME
Microsoft Windows NT
Microsoft Windows 2000
Microsoft Windows XP
Product:
Microsoft Internet Explorer
Reference:
CVE-2003-1025
CVE    1
CVE-2003-1025

© SecPod Technologies