Описание
The XSS Filter in Microsoft Internet Explorer 8 does not properly perform neutering for the SCRIPT tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, a different issue than CVE-2009-4074.
Ссылки
- Broken Link
- Exploit
- Exploit
- Tool Signature
- Broken Link
- Exploit
- Exploit
- Tool Signature
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*
EPSS
Процентиль: 96%
0.22055
Средний
4.3 Medium
CVSS2
Дефекты
CWE-79
Связанные уязвимости
github
больше 3 лет назад
The XSS Filter in Microsoft Internet Explorer 8 does not properly perform neutering for the SCRIPT tag, which allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, a different issue than CVE-2009-4074.
EPSS
Процентиль: 96%
0.22055
Средний
4.3 Medium
CVSS2
Дефекты
CWE-79