Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2005-4089

Microsoft Internet Explorer allows remote attackers to bypass cross-domain security restrictions and obtain sensitive information by using the @import directive to download files from other domains that are not valid Cascading Style Sheets (CSS) files, as demonstrated using Google Desktop, aka "CSSXSS" and "CSS Cross-Domain Information Disclosure Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.431
EPSS Ranking 97.3%
CVSS Severity
CVSS v2 Score 7.1
References
Products affected by CVE-2005-4089


Contact Us

Shodan ® - All rights reserved