CVE-2008-5912 describes a vulnerability in Microsoft Internet Explorer's JavaScript implementation where a "temporary footprint" is created during a web site login. This flaw facilitates in-session phishing attacks by making it easier for attackers to spoof pop-up messages. The vulnerability has a low CVSS score of 2.1 (AV:N/AC:H/Au:S/C:N/I:P/A:N), indicating network access, high attack complexity, authenticated user requirement, and a potential impact of partial integrity loss. Despite being assigned a CVE, there is no known exploit code, active exploitation, or significant community discussion, and it is not listed on the CISA KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:microsoft:internet_explorer:*:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:H/Au:S/C:N/I:P/A:N
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.0 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.