Security Advisory

CVE-2013-1297

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2013-05-15 01:00:00
Last updated 2024-08-06 14:57:04
Assigner microsoft
CVSS score not scored
State PUBLISHED

Description

Microsoft Internet Explorer 6 through 8 does not properly restrict data access by VBScript, which allows remote attackers to perform cross-domain reading of JSON files via a crafted web site, aka "JSON Array Information Disclosure Vulnerability."