Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2004-0526

Опубликовано: 06 авг. 2004
Источник: nvd
CVSS2: 5
EPSS Средний

Описание

Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.0.1:sp4:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.5:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:5.5:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:97:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:98:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2000:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2000:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2000:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2000:sr1:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2002:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2002:sp1:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2002:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2002:sp3:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook:2003:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.01:sp2:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.27.3110:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.72.2106:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.72.3120.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:4.72.3612:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.0:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.0.1:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:5.5:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:outlook_express:6.0:*:*:*:*:*:*:*

EPSS

Процентиль: 98%
0.51338
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
больше 3 лет назад

Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

EPSS

Процентиль: 98%
0.51338
Средний

5 Medium

CVSS2

Дефекты

NVD-CWE-Other