Alias(es)IE.HTML.Same.Origin.Policy.Violation |
Release DateAug 10, 2005 |
Severitylow |
ImpactSensitive information may be stolen. |
DescriptionThis indicates that Internet Explorer 5.01 through 6.0 will allow a remote attacker to steal potentially sensitive information from a user by redirecting the user to another site that has that information. |
Affected ProductsMicrosoft Internet Explorer 6.0 SP1 and earlier versions. |
Recommended ActionsApply MS02-066 patch. |
Coverage IPS
VCM |
Common Vulnerabilities and Exposures (CVE)CVE-2002-1186 |
Reference/shttp://www.securityfocus.com/bid/5610 (BugTraq)http://technet.microsoft.com/en-us/security/bulletin/MS02-066.mspx (MS-ID) |