Microsoft Internet Explorer Files and Folders Enumeration Vulnerabilities
RISK: Medium Risk
TYPE: Clients - Browsers
Multiple vulnerabilities have been discovered in Microsoft Internet Explorer, which can be exploited by malicious people to disclose sensitive information.
The vulnerabilities are caused due to MSXML returning different errors depending on whether or not a file or directory exists. This can be exploited to check the existence of files and directories.
Note: No patch is currently available for the vulnerabilities
Impact
- Information Disclosure
System / Technologies affected
- Microsoft Internet Explorer 10.x
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- No patch is currently available for the vulnerabilities
Vulnerability Identifier
- No CVE information is available
Source
Related Link
Share with