Lucene search

K
jvnJapan Vulnerability NotesJVN:33301529
HistoryDec 15, 2010 - 12:00 a.m.

JVN#33301529: Internet Explorer vulnerable to cross-site scripting

2010-12-1500:00:00
Japan Vulnerability Notes
jvn.jp
24

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.01

Percentile

83.3%

Microsoft Internet Explorer contains a vulnerability in handling specific ISO-2022-JP encoded characters, which may result in cross-site scripting.

Impact

An arbitrary script may be executed.

Solution

Update the Software
Apply the latest update according to the information provided by Microsoft.

Products Affected

  • Supported versions of Internet Explorer (as of 2010 December 15)
    For more information, refer to the information provided by Microsoft.

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

EPSS

0.01

Percentile

83.3%