PT-2010-3164 · Microsoft · Internet Explorer
Publicado
2010-04-20
·
Atualizado
2022-02-28
·
CVE-2010-1489
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer version 8
Description
The issue is related to the XSS Filter in Microsoft Internet Explorer, which does not properly perform neutering for the
SCRIPT tag. This allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities.Recommendations
For Microsoft Internet Explorer version 8, consider disabling the XSS Filter as a temporary workaround until a patch is available. Restrict access to potentially vulnerable web sites to minimize the risk of exploitation.
Exploit
Correção
XSS
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Internet Explorer