First published: Sat Oct 16 2004(Updated: )
Internet Explorer 6 on Double Byte Character Set (DBCS) systems allows remote attackers to alter displayed address bars and spoof web pages via a URL containing special characters, facilitating phishing attacks, aka the "Address Bar Spoofing on Double Byte Character Set Systems Vulnerability."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Internet Explorer | =6-windows_server_2003_sp1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2004-0844 has a medium severity level due to its potential to facilitate phishing attacks.
To fix CVE-2004-0844, users should update to a more secure version of Internet Explorer or apply any available security patches.
CVE-2004-0844 primarily affects Internet Explorer 6 on Double Byte Character Set systems including Windows Server 2003 SP1.
CVE-2004-0844 is associated with address bar spoofing attacks that can lead to phishing.
Yes, CVE-2004-0844 can be exploited remotely by attackers to manipulate the displayed address bar.