CVE-2011-1258: Medium severity internet explorer vulnerability
Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability."
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2011-1258?
CVE-2011-1258 has a severity rating of important, indicating a potential for significant impact on information disclosure.
How do I fix CVE-2011-1258?
To fix CVE-2011-1258, it is essential to apply the security updates provided by Microsoft for the affected versions of Internet Explorer.
Which versions of Internet Explorer are impacted by CVE-2011-1258?
CVE-2011-1258 affects Internet Explorer versions 6, 7, and 8.
Can CVE-2011-1258 allow remote attackers to gather sensitive information?
Yes, CVE-2011-1258 allows user-assisted remote attackers to obtain sensitive information from different domains or zones.
Is CVE-2011-1258 present in newer versions of Windows or Internet Explorer?
No, CVE-2011-1258 does not affect newer versions of Windows or Internet Explorer beyond version 8.