CVE-2005-4827
Last modified
CVE-2005-4827 is a vulnerability of currently unknown severity. Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newline, and carriage return characters within the first argument (method name), which is supported by some proxy servers that convert tabs to spaces. NOTE: this issue can be leveraged to conduct referer spoofing, HTTP Request Smuggling, and other attacks.. EPSS estimates a 10.76% chance of exploitation in the next 30 days.
Description
Internet Explorer 6.0, and possibly other versions, allows remote attackers to bypass the same origin security policy and make requests outside of the intended domain by calling open on an XMLHttpRequest object (Microsoft.XMLHTTP) and using tab, newline, and carriage return characters within the first argument (method name), which is supported by some proxy servers that convert tabs to spaces. NOTE: this issue can be leveraged to conduct referer spoofing, HTTP Request Smuggling, and other attacks.
Metrics
Affected Software
| Vendor | Product | Versions | Update |
|---|---|---|---|
| Microsoft | Ie | 6 | — |
| Microsoft | Ie | 6.0 | — |
| Microsoft | Internet Explorer | 6 | Sp1 |
| Microsoft | Internet Explorer | 6.0 | — |
| Microsoft | Internet Explorer | 6.0.2600 | — |
| Microsoft | Internet Explorer | 6.0.2800 | — |
| Microsoft | Internet Explorer | 6.0.2800.1106 | — |
| Microsoft | Internet Explorer | 6.0.2900.2180 | — |
| Canon | Network Camera Server Vb101 | All versions | — |
References
- http://seclists.org/fulldisclosure/2007/Feb/0081.htmlVendor Advisory
- http://seclists.org/fulldisclosure/2007/Feb/0081.htmlVendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2005-4827?
How severe is CVE-2005-4827?
How do I fix CVE-2005-4827?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2005
- CVE-2005-4821Multiple SQL injection vulnerabilities in Land Down Under (L…
- CVE-2005-4822SQL injection vulnerability in projects/project-edit.asp in …
- CVE-2005-4823Buffer overflow in the HP HTTP Server 5.0 through 5.95 of th…
- CVE-2005-4824PHP remote file inclusion vulnerability in web/classes.php i…
- CVE-2005-4825Cisco Clean Access 3.5.5 and earlier on the Secure Smart Man…
- CVE-2005-4826Unspecified vulnerability in the VLAN Trunking Protocol (VTP…
- CVE-2005-4828Kolab Server 2.0.0 and 2.0.1 does not properly handle when a…
- CVE-2005-4829VirtueMart before 1.0.1 does not properly handle errors when…
- CVE-2005-4830CRLF injection vulnerability in viewcvs in ViewCVS 0.9.2 all…
- CVE-2005-4831viewcvs in ViewCVS 0.9.2 allows remote attackers to set the …
- CVE-2005-4832SQL injection vulnerability in the Oracle Database Server 10…
- CVE-2005-4833IBM WebSphere Application Server (WAS) 6.0 before 20050201, …
Are you affected by CVE-2005-4827?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
