CVE-2013-6237 Information

Description

The ISL Desktop plugin for Windows before 1.4.7 for ISL Light 3.5.4 and earlier allows remote authenticated users to obtain sensitive information by pasting the clipboard contents that have been copied by another user in the session.

Reference

http://osvdb.org/100512 http://packetstormsecurity.com/files/124274/ISL-Light-Desktop-3.5.4-Information-Disclosure.html http://seclists.org/fulldisclosure/2013/Dec/14 http://www.islonline.com/help/isl-releases-info/any/manual/?2013-11-29-rel-info-isl-light-desktop-plugin-1-4-7-win.htm http://www.securityfocus.com/bid/64050 https://exchange.xforce.ibmcloud.com/vulnerabilities/89399

Share on: