PT-2006-4512 · Microsoft · Internet Explorer
Published
2006-08-08
·
Updated
2021-07-23
·
CVE-2006-3640
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 5.01 through 6
Description
An information disclosure issue exists where script can persist across navigations, allowing remote attackers to obtain the window location of visited web pages in other domains or zones. This can be exploited by an attacker constructing a specially crafted web page, potentially gaining access to the window location of a web page in another domain or Internet Explorer zone if a user views the web page.
Recommendations
For Microsoft Internet Explorer versions 5.01 through 6, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer