CVE-2006-3640

Microsoft Internet Explorer 5.01 and 6 - Window Location Information Disclosure

Title source: llm
STIX 2.1

Description

Microsoft Internet Explorer 5.01 and 6 allows certain script to persist across navigations between pages, which allows remote attackers to obtain the window location of visited web pages in other domains or zones, aka "Window Location Information Disclosure Vulnerability."

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1016663
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A171
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/19339
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/21396
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3212
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://www.osvdb.org/27850

Scores

EPSS 0.2495
EPSS Percentile 97.7%

Details

Status published
Products (2)
microsoft/ie 6 windows_server_2003_sp1
microsoft/internet_explorer 5.01
Published Aug 09, 2006
Tracked Since Feb 18, 2026