5

CVE-2004-0526

Exploit

Unknown versions of Internet Explorer and Outlook allow remote attackers to spoof a legitimate URL in the status bar via A HREF tags with modified "alt" values that point to the legitimate site, combined with an image map whose href points to the malicious site, which facilitates a "phishing" attack.

Data is provided by the National Vulnerability Database (NVD)
MicrosoftIe Version6.0 Updatesp1
MicrosoftInternet Explorer Version5.0
MicrosoftInternet Explorer Version5.0.1
MicrosoftInternet Explorer Version5.0.1 Updatesp1
MicrosoftInternet Explorer Version5.0.1 Updatesp2
MicrosoftInternet Explorer Version5.0.1 Updatesp3
MicrosoftInternet Explorer Version5.0.1 Updatesp4
MicrosoftInternet Explorer Version5.5
MicrosoftInternet Explorer Version5.5 Updatesp1
MicrosoftInternet Explorer Version5.5 Updatesp2
MicrosoftInternet Explorer Version6.0
MicrosoftOutlook Version97
MicrosoftOutlook Version98
MicrosoftOutlook Version2000
MicrosoftOutlook Version2000 Updatesp2
MicrosoftOutlook Version2000 Updatesp3
MicrosoftOutlook Version2000 Updatesr1
MicrosoftOutlook Version2002
MicrosoftOutlook Version2002 Updatesp1
MicrosoftOutlook Version2002 Updatesp2
MicrosoftOutlook Version2002 Updatesp3
MicrosoftOutlook Version2003
MicrosoftOutlook Express Version4.0
MicrosoftOutlook Express Version4.01 Updatesp2
MicrosoftOutlook Express Version4.27.3110
MicrosoftOutlook Express Version4.72.2106
MicrosoftOutlook Express Version4.72.3120.0
MicrosoftOutlook Express Version4.72.3612
MicrosoftOutlook Express Version5.0
MicrosoftOutlook Express Version5.0.1
MicrosoftOutlook Express Version5.5
MicrosoftOutlook Express Version6.0
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 52.26% 0.978
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:N/I:P/A:N