imPC@ndo IT

Tracker / CVE-2004-0526

CVE-2004-0526

Medium 5.0

Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

Affected products and versions

microsoft ie
microsoft internet_explorer
microsoft outlook
microsoft outlook_express

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References