Microsoft Internet Explorer 4.0 up to and including 6.0 could allow local users to differentiate between alphanumeric and non-alphanumeric characters used in a password by pressing certain control keys that jump between non-alphanumeric characters, which makes it easier to conduct a brute-force password guessing attack.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft internet explorer 4.0.1 |
||
microsoft ie 4.1 |
||
microsoft internet explorer 4.0 |
||
microsoft ie 4.0.1 |
||
microsoft internet explorer 5.5 |
||
microsoft ie 4.0 |
||
microsoft internet explorer 6.0 |