Cross-domain vulnerability in Microsoft Internet Explorer 6 and 7 allows remote attackers to bypass the Same Origin Policy and access restricted information from other domains via JavaScript that overwrites the document variable and statically sets the document.domain attribute. NOTE: this issue has been disputed by other researchers, citing a variable scoping issue and information about the semantics of document.domain
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2007-06-28T18:00:00

Updated: 2024-08-07T14:21:35.444Z

Reserved: 2007-06-28T00:00:00

Link: CVE-2007-3481

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2007-06-28T18:30:00.000

Modified: 2024-08-07T15:15:32.227

Link: CVE-2007-3481

cve-icon Redhat

No data.