Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fv89-5gfc-wwfc

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy and obtain sensitive information via a crafted HTML document, aka "Cross-Domain Information Disclosure Vulnerability."

Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy and obtain sensitive information via a crafted HTML document, aka "Cross-Domain Information Disclosure Vulnerability."

EPSS

Процентиль: 98%
0.48916
Средний

6.5 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 6.5
nvd
больше 17 лет назад

Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy and obtain sensitive information via a crafted HTML document, aka "Cross-Domain Information Disclosure Vulnerability."

EPSS

Процентиль: 98%
0.48916
Средний

6.5 Medium

CVSS3

Дефекты

CWE-200