20100814 IE8 toStaticHtml Bypassmailing list
http://archives.neohapsis.com/archives/fulldisclosure/2010-08/0179.html CVE-2010-3324
Microsoft Internet Explorer 8 - 'toStaticHTML()' HTML Sanitization Bypass
Record summary
CVE-2010-3324 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
The toStaticHTML function in Microsoft Internet Explorer 8, and the SafeHTML function in Microsoft Windows SharePoint Services 3.0 SP2, SharePoint Foundation 2010, Office SharePoint Server 2007 SP2, Groove Server 2010, and Office Web Apps, allows remote attackers to bypass the cross-site scripting (XSS) protection mechanism and conduct XSS attacks via a crafted use of the Cascading Style Sheets (CSS) @import rule, aka "HTML Sanitization Vulnerability," a different vulnerability than CVE-2010-1257.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBMicrosoft Internet Explorer 8 - 'toStaticHTML()' HTML Sanitization BypassExploitDB exploitby Mario HeiderichNot analyzed1 file
References
8support.avaya.comConfirmation
http://support.avaya.com/css/P8/documents/100113324 TA10-285AThird-party advisory
http://www.us-cert.gov/cas/techalerts/TA10-285A.html wooyun.org
http://www.wooyun.org/bug.php?action=view&id=189 MS10-071Vendor advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-071 MS10-072Vendor advisory
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2010/ms10-072 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-3324 oval:org.mitre.oval:def:7297vdb entrysignature
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7297