First published: Wed Oct 29 2008(Updated: )
Visual truncation vulnerability in Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar via a URL with a hostname containing many (Non-Blocking Space character) sequences, which are rendered as whitespace, aka MSRC ticket MSRC7899, a related issue to CVE-2003-1025.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-4787 has a severity rating that indicates a significant risk of spoofing attacks in Microsoft Internet Explorer 6.
CVE-2008-4787 allows remote attackers to spoof the address bar, potentially misleading users about the authenticity of the website they are visiting.
CVE-2008-4787 specifically affects Microsoft Internet Explorer 6.
To mitigate the risks of CVE-2008-4787, users should upgrade to a newer, more secure browser version that is not susceptible to this vulnerability.
CVE-2008-4787 was identified in 2008 and is related to previous vulnerabilities in Internet Explorer.