Microsoft Internet Explorer 9 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability."
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2014/ms14-010 | vendor advisory |
http://www.securitytracker.com/id/1029741 | vdb entry |
https://exchange.xforce.ibmcloud.com/vulnerabilities/90758 | vdb entry |
http://secunia.com/advisories/56796 | third party advisory |
http://osvdb.org/103167 | vdb entry |
http://www.securityfocus.com/bid/65394 | vdb entry |