Intrusion Prevention

MS.IE.StaticHTML.API.Information.Disclosure

Description

This indicates an attack attempt against a Information Disclosure vulnerability in Microsoft Internet Explorer.
The vulnerability is caused by an error when the vulnerable software handles a maliciously crafted web page. An attacker can trick an unsuspecting user into visiting a malicious webpage and execute arbitrary script code within the context of the target's browser.

Affected Products

Internet Explorer 8 for Windows XP Service Pack 3
Internet Explorer 8 for Windows XP Professional x64 Edition Service Pack 2
Internet Explorer 8 for Windows Server 2003 Service Pack 2
Internet Explorer 8 for Windows Server 2003 x64 Edition Service Pack 2
Internet Explorer 8 in Windows Vista Service Pack 2
Internet Explorer 8 in Windows Vista x64 Edition Service Pack 2
Internet Explorer 8 in Windows Server 2008 for 32-bit Systems Service Pack 2
Internet Explorer 8 in Windows Server 2008 for x64-based Systems Service Pack 2
Internet Explorer 8 in Windows 7 for 32-bit Systems
Internet Explorer 8 in Windows 7 for 32-bit Systems Service Pack 1
Internet Explorer 8 in Windows 7 for x64-based Systems
Internet Explorer 8 in Windows 7 for x64-based Systems Service Pack 1
Internet Explorer 8 in Windows Server 2008 R2 for x64-based Systems
Internet Explorer 8 in Windows Server 2008 R2 for x64-based Systems Service Pack 1
Internet Explorer 8 in Windows Server 2008 R2 for Itanium-based Systems
Internet Explorer 8 in Windows Server 2008 R2 for Itanium-based Systems Service Pack 1
Internet Explorer 9 for Windows Vista Service Pack 2
Internet Explorer 9 for Windows Vista x64 Edition Service Pack 2
Internet Explorer 9 for Windows Server 2008 for 32-bit Systems Service Pack 2
Internet Explorer 9 for Windows Server 2008 for x64-based Systems Service Pack 2
Internet Explorer 9 for Windows 7 for 32-bit Systems
Internet Explorer 9 for Windows 7 for 32-bit Systems Service Pack 1
Internet Explorer 9 for Windows 7 for x64-based Systems
Internet Explorer 9 for Windows 7 for x64-based Systems Service Pack 1
Internet Explorer 9 for Windows Server 2008 R2 for x64-based Systems
Internet Explorer 9 for Windows Server 2008 R2 for x64-based Systems Service Pack 1
Microsoft Communicator 2007 R2
Microsoft Lync 2010 (32-bit)
Microsoft Lync 2010 (64-bit)
Microsoft Lync 2010 Attendee

Impact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems.

CVE References

CVE-2012-1858