Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38fc-cmwf-cfvc

Опубликовано: 29 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and execute Javascript by setting the window's "href" to the malicious Javascript, then calling execCommand("Refresh") to refresh the page, aka BodyRefreshLoadsJPU or the "ExecCommand Cross Domain" vulnerability.

Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and execute Javascript by setting the window's "href" to the malicious Javascript, then calling execCommand("Refresh") to refresh the page, aka BodyRefreshLoadsJPU or the "ExecCommand Cross Domain" vulnerability.

EPSS

Процентиль: 97%
0.30721
Средний

Связанные уязвимости

nvd
около 22 лет назад

Internet Explorer 6 SP1 and earlier allows remote attackers to bypass zone restrictions and execute Javascript by setting the window's "href" to the malicious Javascript, then calling execCommand("Refresh") to refresh the page, aka BodyRefreshLoadsJPU or the "ExecCommand Cross Domain" vulnerability.

EPSS

Процентиль: 97%
0.30721
Средний