PT-2006-3091 · Microsoft · Internet Explorer+1

Publicado

2006-05-01

·

Atualizado

2018-10-18

·

CVE-2006-2111

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Outlook Express 6
Description A component in the software allows remote attackers to bypass domain restrictions and obtain sensitive information via redirections with the mhtml: URI handler. This issue is related to a similar problem originally reported for Internet Explorer 6 and 7.
Recommendations For Microsoft Outlook Express 6, consider disabling the handling of mhtml: URI redirects as a temporary workaround until a patch is available. Restrict access to sensitive information to minimize the risk of exploitation.

Exploit

Correção

Information Disclosure

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2006-2111

Produtos afetados

Internet Explorer
Outlook Express