Security Advisory

CVE-2017-0154

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2017-03-17 00:00:00
Last updated 2024-08-05 12:55:19
Assigner microsoft
State PUBLISHED

Description

Microsoft Internet Explorer 11 on Windows 10, 1511, and 1606 and Windows Server 2016 does not enforce cross-domain policies, allowing attackers to access information from one domain and inject it into another via a crafted application, aka, "Internet Explorer Elevation of Privilege Vulnerability."