First published: Tue Nov 11 2014(Updated: )
Microsoft Internet Explorer 8 through 11 allows remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Internet Explorer Cross-domain Information Disclosure Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =8 | |
Internet Explorer | =9 | |
Internet Explorer | =10 | |
Internet Explorer | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2014-6346 has a critical severity rating that allows remote attackers to access sensitive information.
To fix CVE-2014-6346, update your Microsoft Internet Explorer to the latest version or apply the relevant security patches provided by Microsoft.
CVE-2014-6346 affects Microsoft Internet Explorer versions 8, 9, 10, and 11.
Yes, CVE-2014-6346 can be exploited remotely through crafted websites that facilitate cross-domain information disclosure.
CVE-2014-6346 enables attacks that allow unauthorized access to content from different domains or zones.