Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2010-1257
Description:Cross-site scripting (XSS) vulnerability in the toStaticHTML API, as used in Microsoft Office InfoPath 2003 SP3, 2007 SP1, and 2007 SP2; Office SharePoint Server 2007 SP1 and SP2; SharePoint Services 3.0 SP1 and SP2; and Internet Explorer 8 allows remote attackers to inject arbitrary web script or HTML via vectors related to sanitization.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2010-1257
BugTraq ID: 40409
http://www.securityfocus.com/bid/40409
Cert/CC Advisory: TA10-159B
http://www.us-cert.gov/cas/techalerts/TA10-159B.html
Microsoft Security Bulletin: MS10-035
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-035
Microsoft Security Bulletin: MS10-039
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-039
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A6677
XForce ISS Database: ie-tostatichtml-information-disclosure(58866)
https://exchange.xforce.ibmcloud.com/vulnerabilities/58866




© 1998-2025 E-Soft Inc. All rights reserved.