Back to search
CVE-2007-1091
Published: Feb 26, 2007
Modified: Aug 7, 2024
PUBLISHED
Description
Microsoft Internet Explorer 7 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via onUnload Javascript handlers.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
http://lcamtuf.coredump.cx/ietrap
x_refsource_MISC
22680
vdb-entry
x_refsource_BID
ADV-2007-0713
vdb-entry
x_refsource_VUPEN
20070223 MSIE7 browser entrapment vulnerability (probably Firefox, too)
mailing-list
x_refsource_BUGTRAQ
ie-mozilla-onunload-dos(32647)
vdb-entry
x_refsource_XF
HPSBST02280
vendor-advisory
x_refsource_HP
23014
third-party-advisory
x_refsource_SECUNIA
SSRT071480
vendor-advisory
x_refsource_HP
ie-mozilla-onunload-url-spoofing(32649)
vdb-entry
x_refsource_XF
oval:org.mitre.oval:def:2162
vdb-entry
signature
x_refsource_OVAL
20070223 Secunia Research: Internet Explorer 7 "onunload" Event SpoofingVulnerability
mailing-list
x_refsource_BUGTRAQ
1018788
vdb-entry
x_refsource_SECTRACK
2291
third-party-advisory
x_refsource_SREASON
20070223 MSIE7 browser entrapment vulnerability (probably Firefox, too)
mailing-list
x_refsource_FULLDISC
MS07-057
vendor-advisory
x_refsource_MS
TA07-282A
third-party-advisory
x_refsource_CERT
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now