CVE-2004-0845 Information
Description
Internet Explorer 5.01 5.5 and 6 does not properly cache SSL content which allows remote attackers to obtain information or spoof content via a web site with the same host name as the target web site whose content is cached and reused when the user visits the target web site.
Reference
http://marc.info/?l=bugtraq&m=109770364504803&w=2 http://www.acrossecurity.com/aspr/ASPR-2004-10-13-1-PUB.txt http://www.kb.cert.org/vuls/id/795720 http://www.us-cert.gov/cas/techalerts/TA04-293A.html https://docs.microsoft.com/en-us/security-updates/securitybulletins/2004/ms04-038 https://exchange.xforce.ibmcloud.com/vulnerabilities/17651 https://exchange.xforce.ibmcloud.com/vulnerabilities/17654 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A2219 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A3872 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A5150 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A5520 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A5740 https://oval.cisecurity.org/repository/search/definition/oval3Aorg.mitre.oval3Adef3A7611
Share on: