Lucene search

K
cveMitreCVE-2007-1091
HistoryFeb 26, 2007 - 11:28 a.m.

CVE-2007-1091

2007-02-2611:28:00
mitre
web.nvd.nist.gov
34
microsoft
internet explorer
ie7
vulnerability
remote attackers
phishing
address bar manipulation

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.3

Confidence

Low

EPSS

0.245

Percentile

96.7%

Microsoft Internet Explorer 7 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via onUnload Javascript handlers.

Affected configurations

Nvd
Node
microsoftieMatch6.0sp1
OR
microsoftieMatch6.0sp2
OR
microsoftieMatch7.0vista
OR
microsoftinternet_explorerMatch6.0
VendorProductVersionCPE
microsoftie6.0cpe:2.3:a:microsoft:ie:6.0:sp1:*:*:*:*:*:*
microsoftie6.0cpe:2.3:a:microsoft:ie:6.0:sp2:*:*:*:*:*:*
microsoftie7.0cpe:2.3:a:microsoft:ie:7.0:*:vista:*:*:*:*:*
microsoftinternet_explorer6.0cpe:2.3:a:microsoft:internet_explorer:6.0:*:*:*:*:*:*:*

CVSS2

6.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:P/I:P/A:P

AI Score

6.3

Confidence

Low

EPSS

0.245

Percentile

96.7%