VULNERABILITY INTELLIGENCE
CVE-2004-2219
CVSS score2.6 LOW
EPSS probability8.13%
CISA KEVNot currently listed
Published2004-12-31
Last modified2026-06-16
CVSS vectorAV:N/AC:H/Au:N/C:N/I:P/A:N
Description
Microsoft Internet Explorer 6 allows remote attackers to spoof the address bar to facilitate phishing attacks via Javascript that uses an invalid URI, modifies the Location field, then uses history.back to navigate to the previous domain, aka NullyFake.
Primary references
- cve@mitre.org — Exploit
- cve@mitre.org — Exploit, Vendor Advisory
- cve@mitre.org — Exploit
- cve@mitre.org
- cve@mitre.org
- cve@mitre.org
- af854a3a-2127-422b-91ae-364da2661108 — Exploit
- af854a3a-2127-422b-91ae-364da2661108 — Exploit, Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Exploit
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108
- af854a3a-2127-422b-91ae-364da2661108