PT-2015-1658 · Microsoft · Internet Explorer

Published

2015-07-14

·

Updated

2018-10-12

·

CVE-2015-2410

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Name of the Vulnerable Software and Affected Versions Internet Explorer versions 6 through 11
Description The issue is related to the improper handling of requests from external stylesheets, which could allow a remote attacker to determine the existence of specific local files using a crafted stylesheet. This could potentially be used to obtain information that could be used to further compromise the affected system. The attacker could not execute code or elevate user rights directly through this issue.
Recommendations For Internet Explorer versions 6 through 11, update to a version that properly handles requests from external stylesheets to prevent information disclosure. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Information Disclosure

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-11004
CVE-2015-2410

Affected Products

Internet Explorer