MS.IE.MHTML.Redirection.Information.Disclosure

description-logoDescription

The vulnerability is caused due to an error in the handling of redirections for URLs with the "mhtml:" URI handler. This can be exploited to access documents served from another web site.

affected-products-logoAffected Products

Patched system with Internet Explorer 7.0 and Microsoft Windows XP SP2. Other versions may also be affected.

Impact logoImpact

Sensitive information disclosure.

recomended-action-logoRecommended Actions

Disable active scripting support.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-02 16.972