PT-2010-2963 · Microsoft · Internet Explorer
David Bloom
·
Published
2010-08-11
·
Updated
2023-12-07
·
CVE-2010-1258
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 6 through 8
Description
The issue allows remote attackers to execute script in an unintended domain or security zone, and obtain sensitive information. An information disclosure vulnerability exists that could allow script to gain access to a browser window in another domain or Internet Explorer zone. This could be exploited by constructing a specially crafted Web page that could allow information disclosure if a user viewed the Web page and then interacts with the browser window using the mouse.
Recommendations
For Microsoft Internet Explorer versions 6 through 8, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
RCE
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Internet Explorer