PT-2010-4741 · Microsoft · Internet Explorer
Aldwin Saugere
+1
·
Published
2010-10-13
·
Updated
2025-01-21
·
CVE-2010-3330
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 6 through 8
Description
The issue allows remote attackers to obtain sensitive information via a crafted web site due to improper restriction of script access to content from a different domain or zone. An attacker could exploit this by constructing a specially crafted Web page, potentially allowing information disclosure if a user views the page. This could enable an attacker to view content from another domain or Internet Explorer zone.
Recommendations
For Microsoft Internet Explorer versions 6 through 8, update to a version that properly restricts script access to content from different domains or zones to prevent information disclosure.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Internet Explorer