Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-976c-7p46-r586

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Microsoft Internet Explorer 6 through 9 does not properly use the Content-Disposition HTTP header to control rendering of the HTTP response body, which allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Content-Disposition Information Disclosure Vulnerability."

Microsoft Internet Explorer 6 through 9 does not properly use the Content-Disposition HTTP header to control rendering of the HTTP response body, which allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Content-Disposition Information Disclosure Vulnerability."

EPSS

Процентиль: 94%
0.1521
Средний

Дефекты

CWE-200

Связанные уязвимости

nvd
около 14 лет назад

Microsoft Internet Explorer 6 through 9 does not properly use the Content-Disposition HTTP header to control rendering of the HTTP response body, which allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Content-Disposition Information Disclosure Vulnerability."

EPSS

Процентиль: 94%
0.1521
Средний

Дефекты

CWE-200