This application requires Javascript for optimal performance.

MS.IE.HTML.Same.Origin.Policy.Violation

Alias(es)

IE.HTML.Same.Origin.Policy.Violation

Release Date

Aug 10, 2005

Severity

low

Impact

Sensitive information may be stolen.

Description

This indicates that Internet Explorer 5.01 through 6.0 will allow a remote attacker to steal potentially sensitive information from a user by redirecting the user to another site that has that information.

Affected Products

Microsoft Internet Explorer 6.0 SP1 and earlier versions.

Recommended Actions

Apply MS02-066 patch.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2002-1186

Reference/s

http://www.securityfocus.com/bid/5610 (BugTraq)
http://technet.microsoft.com/en-us/security/bulletin/MS02-066.mspx (MS-ID)

Reference: VID-10539