PT-2015-1658 · Microsoft · Internet Explorer
Publicado
2015-07-14
·
Atualizado
2018-10-12
·
CVE-2015-2410
CVSS v2.0
4.3
Média
| Vetor | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Internet Explorer versions 6 through 11
Description
The issue is related to the improper handling of requests from external stylesheets, which could allow a remote attacker to determine the existence of specific local files using a crafted stylesheet. This could potentially be used to obtain information that could be used to further compromise the affected system. The attacker could not execute code or elevate user rights directly through this issue.
Recommendations
For Internet Explorer versions 6 through 11, update to a version that properly handles requests from external stylesheets to prevent information disclosure.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Internet Explorer