First published: Fri Dec 31 1999(Updated: )
When a Web site redirects the browser to another site, Internet Explorer 3.02 and 4.0 automatically resends authentication information to the second site, aka the "Page Redirect Issue."
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =3.0.2 | |
Internet Explorer | =4.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-1999-1473 is classified as a medium severity vulnerability due to the potential for unauthorized access to sensitive information.
CVE-1999-1473 affects Internet Explorer users by automatically resending authentication credentials to redirected sites, possibly exposing them to credential theft.
CVE-1999-1473 impacts Internet Explorer versions 3.0.2 and 4.0.
An attacker can exploit CVE-1999-1473 by tricking users into visiting a malicious site that redirects them, leading to the unintentional disclosure of credentials.
To mitigate the risks of CVE-1999-1473, users should avoid using vulnerable versions of Internet Explorer and consider upgrading to a more secure browser.