Files
CVEs-PoC/2010/CVE-2010-0494.md
T
2024-06-18 02:51:15 +02:00

864 B

CVE-2010-0494

Description

Cross-domain vulnerability in Microsoft Internet Explorer 6, 6 SP1, 7, and 8 allows user-assisted remote attackers to bypass the Same Origin Policy and conduct cross-site scripting (XSS) attacks via a crafted HTML document in a situation where the client user drags one browser window across another browser window, aka "HTML Element Cross-Domain Vulnerability."

POC

Reference

Github

No PoCs found on GitHub currently.