PT-2006-6259 · Microsoft · Internet Explorer

Published

2006-10-26

·

Updated

2018-10-17

·

CVE-2006-5544

CVSS v2.0

6.4

Medium

VectorAV:N/AC:L/Au:N/C:P/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer version 7
Description A visual truncation issue allows remote attackers to spoof the address bar, potentially leading to phishing attacks. This is achieved through a malicious URL containing non-breaking spaces (%A0), causing the address bar to omit some characters from the URL.
Recommendations For Microsoft Internet Explorer version 7, consider avoiding the use of non-breaking spaces (%A0) in URLs to minimize the risk of address bar spoofing until a fix is available.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-5544

Affected Products

Internet Explorer