CVE-2008-3472: Critical severity internet explorer vulnerability
Microsoft Internet Explorer 6 and 7 does not properly determine the domain or security zone of origin of web script, which allows remote attackers to bypass the intended cross-domain security policy, and execute arbitrary code or obtain sensitive information, via a crafted HTML document, aka "HTML Element Cross-Domain Vulnerability."
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-3472?
CVE-2008-3472 is considered critical due to its ability to allow remote code execution and bypass cross-domain security policies.
How do I fix CVE-2008-3472?
To fix CVE-2008-3472, ensure that you have the latest security updates for Microsoft Internet Explorer.
Which versions of Internet Explorer are affected by CVE-2008-3472?
CVE-2008-3472 affects Microsoft Internet Explorer versions 6 and 7.
What types of attacks can exploit CVE-2008-3472?
CVE-2008-3472 can be exploited through crafted HTML documents to execute arbitrary code.
Are newer versions of Microsoft Internet Explorer vulnerable to CVE-2008-3472?
No, newer versions of Microsoft Internet Explorer that are not listed in CVE-2008-3472 are not vulnerable.