CVE-2003-1559
published 2003-12-31CVE-2003-1559: Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in requests for http:// URLs, which allows…
PriorityP420medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
15.80%
96.5th percentile
Microsoft Internet Explorer 5.22, and other 5 through 6 SP1 versions, sends Referer headers containing https:// URLs in requests for http:// URLs, which allows remote attackers to obtain potentially sensitive information by reading Referer log data.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| microsoft | ie | — | — |
| microsoft | internet_explorer | — | — |
| microsoft | internet_explorer | — | — |
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://securityreason.com/securityalert/3989http://www.gadgetopia.com/2003/12/23/OutlookWebAccessPrivacyHole.htmlhttp://www.securityfocus.com/archive/1/348360http://www.securityfocus.com/archive/1/348574http://www.securityfocus.com/bid/9295http://securityreason.com/securityalert/3989http://www.gadgetopia.com/2003/12/23/OutlookWebAccessPrivacyHole.htmlhttp://www.securityfocus.com/archive/1/348360http://www.securityfocus.com/archive/1/348574http://www.securityfocus.com/bid/9295
2003-12-31
Published