CVE-2011-4689

Microsoft Internet Explorer 6 through 9 does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, which makes it easier for remote attackers to determine whether a document exists in the browser cache via crafted JavaScript code.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*
cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*

History

No history.

Information

Published : 2011-12-07 19:55

Updated : 2024-02-28 11:41


NVD link : CVE-2011-4689

Mitre link : CVE-2011-4689

CVE.ORG link : CVE-2011-4689


JSON object : View

Products Affected

microsoft

  • internet_explorer
CWE
CWE-264

Permissions, Privileges, and Access Controls