Required CVE Record Information
Description
Internet Explorer 5.5 and 6 does not properly handle plug-in navigation, which allows remote attackers to alter displayed address bars and thereby spoof web pages, facilitating phishing attacks, aka the "Plug-in Navigation Address Bar Spoofing Vulnerability."
References 11 Total
- kb.cert.org: VU#625616 third-party-advisory
- docs.microsoft.com: MS04-038 vendor-advisory
- oval.cisecurity.org: oval:org.mitre.oval:def:7095 vdb-entrysignature
- oval.cisecurity.org: oval:org.mitre.oval:def:7194 vdb-entrysignature
- oval.cisecurity.org: oval:org.mitre.oval:def:2487 vdb-entrysignature
- us-cert.gov: TA04-293A third-party-advisory
- exchange.xforce.ibmcloud.com: ie-ms04038-patch(17651) vdb-entry
- oval.cisecurity.org: oval:org.mitre.oval:def:2537 vdb-entrysignature
- exchange.xforce.ibmcloud.com: ie-plugin-address-spoofing(17655) vdb-entry
- oval.cisecurity.org: oval:org.mitre.oval:def:3949 vdb-entrysignature
- oval.cisecurity.org: oval:org.mitre.oval:def:6313 vdb-entrysignature
Updated:
This container includes required additional information provided by the CVE Program for this vulnerability.
References 11 Total
- kb.cert.org: VU#625616 third-party-advisoryx_transferred
- docs.microsoft.com: MS04-038 vendor-advisoryx_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:7095 vdb-entrysignaturex_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:7194 vdb-entrysignaturex_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:2487 vdb-entrysignaturex_transferred
- us-cert.gov: TA04-293A third-party-advisoryx_transferred
- exchange.xforce.ibmcloud.com: ie-ms04038-patch(17651) vdb-entryx_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:2537 vdb-entrysignaturex_transferred
- exchange.xforce.ibmcloud.com: ie-plugin-address-spoofing(17655) vdb-entryx_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:3949 vdb-entrysignaturex_transferred
- oval.cisecurity.org: oval:org.mitre.oval:def:6313 vdb-entrysignaturex_transferred