CVE Database
/

CVE-2007-3826

Back to search

CVE-2007-3826

Published: Jul 17, 2007

Modified: Aug 7, 2024

PUBLISHED

Description

Microsoft Internet Explorer 7 on Windows XP SP2 allows remote attackers to prevent users from leaving a site, spoof the address bar, and conduct phishing and other attacks via repeated document.open function calls after a user requests a new page, but before the onBeforeUnload function is called.

VendorProductVersions

n/a

n/a

affected
n/a

References

20070713 MSIE7 entrapment again (+ FF tidbit)
mailing-list
x_refsource_BUGTRAQ
ADV-2007-2540
vdb-entry
x_refsource_VUPEN
38212
vdb-entry
x_refsource_OSVDB
26069
third-party-advisory
x_refsource_SECUNIA
oval:org.mitre.oval:def:2324
vdb-entry
signature
x_refsource_OVAL
24911
vdb-entry
x_refsource_BID
HPSBST02280
vendor-advisory
x_refsource_HP
SSRT071480
vendor-advisory
x_refsource_HP
ie-open-addressbar-spoofing(35421)
vdb-entry
x_refsource_XF
1018788
vdb-entry
x_refsource_SECTRACK
MS07-057
vendor-advisory
x_refsource_MS
TA07-282A
third-party-advisory
x_refsource_CERT
2892
third-party-advisory
x_refsource_SREASON

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now