CVE Database
/

CVE-2013-3166

Back to search

CVE-2013-3166

Published: Jul 10, 2013

Modified: Aug 6, 2024

PUBLISHED

Description

Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer 6 through 10 allows remote attackers to inject arbitrary web script or HTML via vectors involving incorrect auto-selection of the Shift JIS encoding, leading to cross-domain scrolling events, aka "Shift JIS Character Encoding Vulnerability," a different vulnerability than CVE-2013-0015.

VendorProductVersions

n/a

n/a

affected
n/a

References

oval:org.mitre.oval:def:17306
vdb-entry
signature
x_refsource_OVAL
MS13-055
vendor-advisory
x_refsource_MS
TA13-190A
third-party-advisory
x_refsource_CERT

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now