4.3
CVSSv2

CVE-2007-5158

Published: 01/10/2007 Updated: 13/12/2021
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The focus handling for the onkeydown event in Microsoft Internet Explorer 6.0 allows remote malicious users to change field focus and copy keystrokes via a certain use of a JavaScript htmlFor attribute, as demonstrated by changing focus from a textarea to a file upload field, a related issue to CVE-2007-3511.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 6.0

Exploits

source: wwwsecurityfocuscom/bid/25836/info Microsoft Internet Explorer is prone to an information-disclosure vulnerability that allows attackers to gain access to the contents of arbitrary files This issue stems from a design error resulting from the improper handling of form fields This issue is similar to the one described in BID 24 ...