![]() |
Home ▼ Bookkeeping
Online ▼ Security
Audits ▼
Managed
DNS ▼
About
Order
FAQ
Acceptable Use Policy
Dynamic DNS Clients
Configure Domains Dyanmic DNS Update Password Network
Monitor ▼
Enterprise Package
Advanced Package
Standard Package
Free Trial
FAQ
Price/Feature Summary
Order/Renew
Examples
Configure/Status Alert Profiles | ||
CVE ID: | CVE-2009-4074 |
Description: | The XSS Filter in Microsoft Internet Explorer 8 allows remote attackers to leverage the "response-changing mechanism" to conduct cross-site scripting (XSS) attacks against web sites that have no inherent XSS vulnerabilities, related to the details of output encoding and improper modification of an HTML attribute, aka "XSS Filter Script Handling Vulnerability." |
Test IDs: | 1.3.6.1.4.1.25623.1.0.900898 |
Cross References: |
Common Vulnerability Exposure (CVE) ID: CVE-2009-4074 BugTraq ID: 37135 http://www.securityfocus.com/bid/37135 http://hackademix.net/2009/11/21/ies-xss-filter-creates-xss-vulnerabilities/ http://www.owasp.org/images/5/50/OWASP-Italy_Day_IV_Maone.pdf http://www.theregister.co.uk/2009/11/20/internet_explorer_security_flaw/ Microsoft Security Bulletin: MS10-002 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-002 https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7715 |