Oval Definition:oval:org.mitre.oval:def:1498
Revision Date:2011-05-16Version:45
Title:IE6 Address Bar Spoofing Vulnerability (Server 2003)
Description:Microsoft Internet Explorer 5.01 through 6 allows remote attackers to conduct phishing attacks by spoofing the address bar and other parts of the trust UI via unknown methods that allow "window content to persist" after the user has navigated to another site, aka the "Address Bar Spoofing Vulnerability." NOTE: this is a different vulnerability than CVE-2006-1626.
Family:windowsClass:vulnerability
Status:ACCEPTEDReference(s):CVE-2006-1192
Platform(s):Microsoft Windows Server 2003
Product(s):Microsoft Internet Explorer
Definition Synopsis
  • Windows Server 2003 is installed
  • AND NOT Win2K/XP/2003 is patched
  • AND the version of mshtml.dll is less than 6.0.3790.507
  • BACK