main
Report a problem

Microsoft Internet Explorer Disclosure of Sensitive XML Info

malebolgia   on 09 October 2004 - 22:44 · 42 comments & 4592 views

Advertisement (Why?)
Georgi Guninski has reported that a two year old vulnerability has been reintroduced in Microsoft Internet Explorer and can be exploited by malicious people to disclose potentially sensitive information. The vulnerability is caused due to insufficient cross-site restrictions when handling XML documents in some situations. This can be exploited on e.g. a malicious web site to view well-formed XML documents on arbitrary servers in the context of a user's session.

Solution:
  • Disable Active Scripting support.
  • Use another browser.
News source: Secunia

Post a comment · Send to friend Comments · There are 42 additional comments

Commenting has either been disabled on this article or you are not logged in. Click here to login or register, its free!

Note: Anonymous commenting is disabled in order to keep the quality of responses to a high standard.

Advertisement (Why?)