CVE-2011-1246: Infoleak
Published Jun 16, 2011
·Updated
Microsoft Internet Explorer 8 does not properly handle content settings in HTTP responses, which allows remote web servers to obtain sensitive information from a different (1) domain or (2) zone via a crafted response, aka "MIME Sniffing Information Disclosure Vulnerability."
Affected Software
10 affected components
Microsoft Internet Explorer=8
Microsoft Windows 7
Microsoft Windows Server 2003=sp2
Microsoft Windows Server 2008
Microsoft Windows Server 2008=sp2
Microsoft Windows Server 2008=r2
Microsoft Windows Vista=sp1
Microsoft Windows Vista=sp2
Microsoft Windows XP=sp2
Microsoft Windows XP=sp3
Remediation
Event History
Jun 16, 2011
CVE Published
via MITRE·08:21 PM
Data Sourced
via MITRE·08:21 PM
Description
Data Sourced
08:55 PM
DescriptionWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2011-1246?
CVE-2011-1246 has a severity rating of 'Moderate' due to the potential for information disclosure.
2
How do I fix CVE-2011-1246?
To fix CVE-2011-1246, apply the relevant security updates provided by Microsoft.
3
What software is affected by CVE-2011-1246?
CVE-2011-1246 primarily affects Microsoft Internet Explorer 8.
4
What type of vulnerability is CVE-2011-1246?
CVE-2011-1246 is a MIME Sniffing Information Disclosure Vulnerability.
5
What can attackers do with CVE-2011-1246?
Attackers can use CVE-2011-1246 to obtain sensitive information from different domains or zones.