Security Advisory

CVE-2011-1258

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-06-16 20:21:00
Last updated 2024-08-06 22:21:33
Assigner microsoft
CVSS score not scored
State PUBLISHED

Description

Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability."