Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy and obtain sensitive information via a crafted HTML document, aka "Cross-Domain Information Disclosure Vulnerability."
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 17 Jan 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: microsoft
Published:
Updated: 2025-01-17T15:21:02.458Z
Reserved: 2008-08-04T00:00:00
Link: CVE-2008-3474
Updated: 2024-08-07T09:37:26.999Z
Status : Deferred
Published: 2008-10-15T00:12:15.817
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-3474
No data.
OpenCVE Enrichment
No data.
Weaknesses