Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-wpcm-5rf2-mrhv

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Internet Explorer 6 for Windows XP SP2 and earlier allows remote attackers to spoof the address bar and possibly conduct phishing attacks by re-opening the window to a malicious Shockwave Flash application, then changing the window location back to a trusted URL while the Flash application is still loading. NOTE: this is a different vulnerability than CVE-2006-1192.

Internet Explorer 6 for Windows XP SP2 and earlier allows remote attackers to spoof the address bar and possibly conduct phishing attacks by re-opening the window to a malicious Shockwave Flash application, then changing the window location back to a trusted URL while the Flash application is still loading. NOTE: this is a different vulnerability than CVE-2006-1192.

EPSS

Процентиль: 98%
0.52297
Средний

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 20 лет назад

Internet Explorer 6 for Windows XP SP2 and earlier allows remote attackers to spoof the address bar and possibly conduct phishing attacks by re-opening the window to a malicious Shockwave Flash application, then changing the window location back to a trusted URL while the Flash application is still loading. NOTE: this is a different vulnerability than CVE-2006-1192.

EPSS

Процентиль: 98%
0.52297
Средний

Дефекты

CWE-20