Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-jp99-r232-g242

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Microsoft Internet Explorer 6 through 8 does not properly restrict data access by VBScript, which allows remote attackers to perform cross-domain reading of JSON files via a crafted web site, aka "JSON Array Information Disclosure Vulnerability."

Microsoft Internet Explorer 6 through 8 does not properly restrict data access by VBScript, which allows remote attackers to perform cross-domain reading of JSON files via a crafted web site, aka "JSON Array Information Disclosure Vulnerability."

EPSS

Процентиль: 94%
0.14478
Средний

Дефекты

CWE-200

Связанные уязвимости

nvd
больше 12 лет назад

Microsoft Internet Explorer 6 through 8 does not properly restrict data access by VBScript, which allows remote attackers to perform cross-domain reading of JSON files via a crafted web site, aka "JSON Array Information Disclosure Vulnerability."

EPSS

Процентиль: 94%
0.14478
Средний

Дефекты

CWE-200