First published: Tue Oct 09 2007(Updated: )
Microsoft Internet Explorer 5.01 through 7 allows remote attackers to spoof the URL address bar and other "trust UI" components via unspecified vectors, a different issue than CVE-2007-1091 and CVE-2007-3826.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =5.00.2614.3500 | |
Internet Explorer | =5.00.2516.1900 | |
Internet Explorer | =5.00.2919.800 | |
Internet Explorer | =5.00.2919.3800 | |
Internet Explorer | =5.00.2919.6307 | |
Internet Explorer | =5.00.2920.0000 | |
Internet Explorer | =5.00.3103.1000 | |
Internet Explorer | =5.00.3105.0106 | |
Internet Explorer | =5.00.3314.2101 | |
Internet Explorer | =5.00.3315.1000 | |
Internet Explorer | =5.00.3502.1000 | |
Internet Explorer | =5.00.3700.1000 | |
Internet Explorer | =6.00.2462.0000 | |
Internet Explorer | =6.00.2479.0006 | |
Internet Explorer | =6.00.2600.0000 | |
Internet Explorer | =6.00.2800.1106 | |
Internet Explorer | =7.0 | |
Internet Explorer | =6.00.2900.2180 | |
Internet Explorer | =6.00.3663.0000 | |
Internet Explorer | =6.00.3718.0000 | |
Internet Explorer | =6.00.3790.0000 | |
Internet Explorer | =6.00.3790.1830 | |
Internet Explorer | =6.00.3790.3959 | |
Internet Explorer | =7.0-beta1 | |
Internet Explorer | =7.0-beta2 | |
Internet Explorer | =7.0-beta3 | |
Internet Explorer | =7.00.5730.1100 | |
Internet Explorer | =7.00.6000.16386 | |
Internet Explorer | =7.00.6000.16441 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-3892 is considered a medium risk vulnerability due to its potential to allow URL spoofing.
To fix CVE-2007-3892, it is recommended to upgrade Microsoft Internet Explorer to the latest version available.
CVE-2007-3892 affects Internet Explorer versions 5.01 to 7, including specific updates and betas.
CVE-2007-3892 facilitates URL spoofing attacks that can mislead users about the legitimacy of a website.
While specific workarounds are limited, users are advised to exercise caution while browsing and avoid clicking on suspicious links.