Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability."
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: microsoft

Published: 2011-06-16T20:21:00

Updated: 2018-10-12T19:57:01

Reserved: 2011-03-04T00:00:00


Link: CVE-2011-1258

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2011-06-16T20:55:01.823

Modified: 2022-02-28T19:43:04.937


Link: CVE-2011-1258

JSON object: View

cve-icon Redhat Information

No data.

CWE