PT-2010-3164 · Microsoft · Internet Explorer

Publicado

2010-04-20

·

Atualizado

2022-02-28

·

CVE-2010-1489

CVSS v2.0

4.3

Média

VetorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer version 8
Description The issue is related to the XSS Filter in Microsoft Internet Explorer, which does not properly perform neutering for the SCRIPT tag. This allows remote attackers to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities.
Recommendations For Microsoft Internet Explorer version 8, consider disabling the XSS Filter as a temporary workaround until a patch is available. Restrict access to potentially vulnerable web sites to minimize the risk of exploitation.

Exploit

Correção

XSS

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2010-1489

Produtos afetados

Internet Explorer