Security Advisory

CVE-2009-1140

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2009-06-10 18:00:00
Last updated 2024-08-07 05:04:49
Assigner microsoft
State PUBLISHED

Description

Microsoft Internet Explorer 5.01 SP4; 6 SP1; 6 and 7 for Windows XP SP2 and SP3; 6 and 7 for Server 2003 SP2; 7 for Vista Gold, SP1, and SP2; and 7 for Server 2008 SP2 does not prevent HTML rendering of cached content, which allows remote attackers to bypass the Same Origin Policy via unspecified vectors, aka "Cross-Domain Information Disclosure Vulnerability."