ms02-008...

- AV AC AU C I A
发布: 2002-02-22
修订: 2025-04-13

Microsoft Security Advisory MS02-008 - Microsoft XML Core Services (MSXML) contains a flaw in how the XMLHTTP control applies IE security zone settings to a redirected data stream returned in response to a request for data from a web site. A vulnerability results because an attacker could seek to exploit this flaw and specify a data source that is on the user's local system. The attacker could then use this to return information from the local system to the attacker's web site. Microsoft FAQ on this issue available here.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息