Oval Definition:oval:org.mitre.oval:def:12817
Revision Date:2011-08-15Version:3
Title:Microsoft Internet Explorer 6 through 8 spoofing vulnerability
Description:Microsoft Internet Explorer 6 through 8 allows remote attackers to spoof the address bar, via window.open with a relative URI, to show an arbitrary URL on the web site visited by the victim, as demonstrated by a visit to an attacker-controlled web page, which triggers a spoofed login form for the site containing that page.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2009-3003
Platform(s):Microsoft Windows 2000
Microsoft Windows 7
Microsoft Windows Server 2003
Microsoft Windows Server 2008
Microsoft Windows Vista
Microsoft Windows XP
Product(s):Microsoft Internet Explorer 6
Microsoft Internet Explorer 7
Microsoft Internet Explorer 8
Definition Synopsis
  • Microsoft Internet Explorer 6 is installed
  • OR Microsoft Internet Explorer 7 is installed
  • OR Microsoft Internet Explorer 8 is installed
  • BACK