CVE
- Id
- 21256
- CVE No.
- CVE-2006-5152
- Status
- Candidate
- Description
- Cross-site scripting (XSS) vulnerability in Microsoft Internet Explorer allows remote attackers to inject arbitrary web script or HTML via a UTF-7 encoded URL that is returned in a large HTTP 404 error message without an explicit charset, a related issue to CVE-2006-0032.
- Phase
- Assigned (20061003)
- Votes
- None (candidate not yet proposed)
- Comments