PT-2004-1640 · Netscape · Netscape Navigator
Publicado
2004-06-08
·
Atualizado
2017-07-11
·
CVE-2004-0528
CVSS v2.0
5.0
Média
| Vetor | AV:N/AC:L/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Netscape Navigator version 7.1
Description
The issue allows remote attackers to spoof a legitimate URL in the status bar, facilitating a phishing attack. This is achieved by using A HREF tags with modified
alt values that point to the legitimate site, combined with an image map whose href points to the malicious site.Recommendations
For Netscape Navigator version 7.1, consider disabling the use of image maps and modified
alt values in A HREF tags to minimize the risk of exploitation. Restrict access to untrusted websites to reduce the likelihood of a phishing attack.Exploit
Correção
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Netscape Navigator