CVE-2015-6144: XSS
Microsoft Internet Explorer 8 through 11 and Microsoft Edge mishandle HTML attributes in HTTP responses, which allows remote attackers to bypass a cross-site scripting (XSS) protection mechanism via unspecified vectors, aka "Microsoft Browser XSS Filter Bypass Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-6144?
CVE-2015-6144 has a high severity rating due to its ability to bypass the cross-site scripting protection in affected browsers.
What versions of Internet Explorer are affected by CVE-2015-6144?
CVE-2015-6144 affects Internet Explorer versions 8, 9, 10, and 11.
How do I fix CVE-2015-6144?
To mitigate CVE-2015-6144, users should apply the latest security updates and patches from Microsoft.
What types of attacks can exploit CVE-2015-6144?
CVE-2015-6144 can be exploited to facilitate cross-site scripting (XSS) attacks, compromising the security of web applications.
Is Microsoft Edge affected by CVE-2015-6144?
Yes, Microsoft Edge is also affected by CVE-2015-6144 as it mishandles HTML attributes in HTTP responses.