Check Point Reference: | CPAI-2006-044 |
Date Published: | 21 May 2006 |
Severity: | High |
Last Updated: | Monday 07 May, 2007 |
Source: | SecurityTracker Alert ID: 1016005 |
Industry Reference: | CVE-2006-2111 |
Protection Provided by: | |
Who is Vulnerable? | Microsoft Internet Explorer 6.0 |
Vulnerability Description | A vulnerability has been identified in Microsoft Internet Explorer. Internet Explorer fails to properly validate "mhtml:" URL redirections. This could be exploited by a remote attackers to access sensitive information on behalf of the target user. |
Update/Patch Avaliable | Check Point is not aware of an official patch for this issue. |
Vulnerability Details | The flaw is in the handling of "mhtml:" URL redirections, which could be exploited by remote attackers to read content and data served from another domain in the context of a malicious web page. |