CVE-2012-6502 Information
Feb 14, 2021
cve
Description
Microsoft Internet Explorer before 10 allows remote attackers to obtain sensitive information about the existence of files and read certain data from files via a UNC share pathname in the SRC attribute of a SCRIPT element as demonstrated by reading a name-value pair from a local file via a \\127.0.0.1\C$\ sequence.
Reference
http://www.nsfocus.com/en/2012/advisories_1228/119.html
Share on: