PT-2015-1658 · Microsoft · Internet Explorer
Published
2015-07-14
·
Updated
2018-10-12
·
CVE-2015-2410
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Internet Explorer versions 6 through 11
Description
The issue is related to the improper handling of requests from external stylesheets, which could allow a remote attacker to determine the existence of specific local files using a crafted stylesheet. This could potentially be used to obtain information that could be used to further compromise the affected system. The attacker could not execute code or elevate user rights directly through this issue.
Recommendations
For Internet Explorer versions 6 through 11, update to a version that properly handles requests from external stylesheets to prevent information disclosure.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Internet Explorer