Skip to main content

Microsoft Internet Explorer Files and Folders Enumeration Vulnerabilities

Last Update Date: 7 May 2013 10:12 Release Date: 7 May 2013 3601 Views

RISK: Medium Risk

TYPE: Clients - Browsers

TYPE: Browsers

Multiple vulnerabilities have been discovered in Microsoft Internet Explorer, which can be exploited by malicious people to disclose sensitive information.

 

The vulnerabilities are caused due to MSXML returning different errors depending on whether or not a file or directory exists. This can be exploited to check the existence of files and directories.

 

Note: No patch is currently available for the vulnerabilities


Impact

  • Information Disclosure

System / Technologies affected

  • Microsoft Internet Explorer 10.x

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.

  • No patch is currently available for the vulnerabilities

Vulnerability Identifier

  • No CVE information is available

Source


Related Link