CVE-2011-4689: Medium severity internet explorer vulnerability
Microsoft Internet Explorer 6 through 9 does not prevent capture of data about the times of Same Origin Policy violations during IFRAME loading attempts, which makes it easier for remote attackers to determine whether a document exists in the browser cache via crafted JavaScript code.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4689?
CVE-2011-4689 is rated as a moderate severity vulnerability that can lead to information disclosure.
How do I fix CVE-2011-4689?
To fix CVE-2011-4689, you should update Microsoft Internet Explorer to the latest version provided by Microsoft.
What versions of Internet Explorer are affected by CVE-2011-4689?
CVE-2011-4689 affects Microsoft Internet Explorer versions 6, 7, 8, and 9.
What type of attack does CVE-2011-4689 facilitate?
CVE-2011-4689 facilitates remote attackers in determining document existence in the browser cache through JavaScript.
Is there a workaround for CVE-2011-4689?
There are no specific workarounds for CVE-2011-4689; updating the software is the recommended course of action.