CVE Database
/

CVE-2010-0488

Back to search

CVE-2010-0488

Published: Mar 31, 2010

Modified: Jan 21, 2025

PUBLISHED

Description

Microsoft Internet Explorer 5.01 SP4, 6, 6 SP1, and 7 does not properly handle unspecified "encoding strings," which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted web site, aka "Post Encoding Information Disclosure Vulnerability."

VendorProductVersions

n/a

n/a

affected
n/a

References

JVN#49467403
third-party-advisory
x_refsource_JVN
TA10-089A
third-party-advisory
x_refsource_CERT
39028
vdb-entry
x_refsource_BID
TA10-068A
third-party-advisory
x_refsource_CERT
MS10-018
vendor-advisory
x_refsource_MS
JVNDB-2010-000011
third-party-advisory
x_refsource_JVNDB
ADV-2010-0744
vdb-entry
x_refsource_VUPEN
1023773
vdb-entry
x_refsource_SECTRACK
oval:org.mitre.oval:def:7840
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now