Security Advisory

CVE-2008-4029

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2008-11-12 23:00:00
Last updated 2024-08-07 10:00:42
Assigner microsoft
CVSS score not scored
State PUBLISHED

Description

Cross-domain vulnerability in Microsoft XML Core Services 3.0 and 4.0, as used in Internet Explorer, allows remote attackers to obtain sensitive information from another domain via a crafted XML document, related to improper error checks for external DTDs, aka "MSXML DTD Cross-Domain Scripting Vulnerability."