Short Name |
HTTP:STC:IE:URI-REDIRECTION |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Microsoft Internet Explorer URI Redirection Security Bypass |
Release Date |
2010/10/13 |
Update Number |
1791 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
A security bypass vulnerability exists in Microsoft Internet Explorer. The vulnerability is due to a design error when performing redirection of the Successful exploitation would result in disclosure of arbitrary files on the affected client system and being rendered as HTML content thereby executing any script content they might contain.
Microsoft Internet Explorer is prone to an information-disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may lead to further attacks.