CVE-2019-0654: Medium severity internet explorer vulnerability
Published Mar 5, 2019
·Updated
A spoofing vulnerability exists when Microsoft browsers improperly handles specific redirects, aka 'Microsoft Browser Spoofing Vulnerability'.
Affected Software
19 affected components
Microsoft Internet Explorer=10
Microsoft Windows Server 2012
Microsoft Internet Explorer=11
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1703
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=sp1
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Internet Explorer=9
Microsoft Windows Server 2008=sp2
Microsoft Edge
Microsoft Windows Server 2019
Remediation
Event History
Mar 5, 2019
CVE Published
11:29 PM
Mar 6, 2019
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2019-0654?
CVE-2019-0654 is categorized as a spoofing vulnerability which can allow attackers to impersonate trusted sites.
2
How do I fix CVE-2019-0654?
To fix CVE-2019-0654, ensure that you apply the latest security updates for Microsoft Internet Explorer and Edge.
3
Which versions of Internet Explorer are affected by CVE-2019-0654?
CVE-2019-0654 affects Internet Explorer versions 9, 10, and 11.
4
Can CVE-2019-0654 be exploited remotely?
Yes, CVE-2019-0654 can potentially be exploited remotely through crafted URLs.
5
What impact does CVE-2019-0654 have on my system?
CVE-2019-0654 allows attackers to spoof URLs, which can mislead users into entering sensitive information.