PT-2006-4512 · Microsoft · Internet Explorer

Published

2006-08-08

·

Updated

2021-07-23

·

CVE-2006-3640

CVSS v2.0

5.0

Medium

VectorAV:N/AC:L/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer versions 5.01 through 6
Description An information disclosure issue exists where script can persist across navigations, allowing remote attackers to obtain the window location of visited web pages in other domains or zones. This can be exploited by an attacker constructing a specially crafted web page, potentially gaining access to the window location of a web page in another domain or Internet Explorer zone if a user views the web page.
Recommendations For Microsoft Internet Explorer versions 5.01 through 6, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-3640

Affected Products

Internet Explorer