Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2010-0494

Cross-domain vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted HTML document in a situation where the client user drags one browser window across another browser window, aka "HTML Element Cross-Domain Vulnerability."
Exploit prediction scoring system (EPSS) score
EPSS Score 0.463
EPSS Ranking 97.5%
CVSS Severity
CVSS v2 Score 4.3
References
Products affected by CVE-2010-0494


Contact Us

Shodan ® - All rights reserved