Логотип exploitDog
bind:CVE-2002-0815
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2002-0815

Количество 3

Количество 3

nvd логотип

CVE-2002-0815

около 23 лет назад

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted site, loading a page from the restricted site into one frame, and passing the information to the attacker-controlled frame, which is allowed because the document.domain of the two frames matches on the parent domain.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2002-0815

около 23 лет назад

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netsc ...

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-6p7q-r2p3-gx4g

больше 3 лет назад

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted site, loading a page from the restricted site into one frame, and passing the information to the attacker-controlled frame, which is allowed because the document.domain of the two frames matches on the parent domain.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-0815

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted site, loading a page from the restricted site into one frame, and passing the information to the attacker-controlled frame, which is allowed because the document.domain of the two frames matches on the parent domain.

CVSS2: 7.5
1%
Низкий
около 23 лет назад
debian логотип
CVE-2002-0815

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netsc ...

CVSS2: 7.5
1%
Низкий
около 23 лет назад
github логотип
GHSA-6p7q-r2p3-gx4g

The Javascript "Same Origin Policy" (SOP), as implemented in (1) Netscape, (2) Mozilla, and (3) Internet Explorer, allows a remote web server to access HTTP and SOAP/XML content from restricted sites by mapping the malicious server's parent DNS domain name to the restricted site, loading a page from the restricted site into one frame, and passing the information to the attacker-controlled frame, which is allowed because the document.domain of the two frames matches on the parent domain.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу