Microsoft Internet Explorer permits cross-origin loading of CSS stylesheets even when the stylesheet download has an incorrect MIME type and the stylesheet document is malformed, which allows remote HTTP servers to obtain sensitive information via a crafted document.
References
Link | Resource |
---|---|
http://code.google.com/p/chromium/issues/detail?id=9877 | Exploit |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:21:10
Updated: 2022-10-03T16:21:10
Reserved: 2022-10-03T00:00:00
Link: CVE-2010-0652
JSON object: View
NVD Information
Status : Analyzed
Published: 2010-02-18T18:00:00.707
Modified: 2021-07-23T15:12:10.537
Link: CVE-2010-0652
JSON object: View
Redhat Information
No data.
CWE