HTTP: Microsoft Internet Explorer Nested Anchor Tag Confusion Status Bar Spoofing

This signature detects attempts to exploit a known vulnerability against Microsoft Internet Explorer. A successful attack could allow an attacker to convince targeted users into visiting malicious sites.

Extended Description

Microsoft Internet Explorer is reported prone to a URI obfuscation weakness. This issue may be leveraged by an attacker to display false information in the status bar of an unsuspecting user, allowing an attacker to present web pages to users that seem to originate from a trusted location. This vulnerability is reported to affect Internet Explorer 6, other versions might also be affected. Update: A report regarding this issue has been disclosed specifying that Internet Explorer version 6.0.2900.2180 may not be affected, or may be affected in a different manner. Symantec has confirmed that version 6.0.2800.1106 of Internet Explorer is vulnerable to this weakness. NOTE: It has been reported that this issue does not affect Internet Explorer for Apple Mac OS X. Update: Internet Explorer version 6.0.2900.2180 running on Windows XP SP2 is reportedly not vulnerable to this issue.

Affected Products

Microsoft internet_explorer

References

BugTraq: 11561

Short Name
HTTP:STC:IE:ANCHOR-URL-SPOOF
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
Anchor Bar Confusion Explorer Internet Microsoft Nested Spoofing Status Tag bid:11561
Release Date
07/08/2013
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3375
False Positive
Unknown
Vendors

Microsoft

Found a potential security threat?