VULNERABILITY INTELLIGENCE
CVE-2012-0010
CVSS score4.3 MEDIUM
EPSS probability13.35%
CISA KEVNot currently listed
Published2012-02-14
Last modified2026-06-16
CVSS vectorAV:N/AC:M/Au:N/C:P/I:N/A:N
Description
Microsoft Internet Explorer 6 through 9 does not properly perform copy-and-paste operations, which allows user-assisted remote attackers to read content from a different (1) domain or (2) zone via a crafted web site, aka "Copy and Paste Information Disclosure Vulnerability."
Weakness classification
- CWE-200: Exposure of Sensitive Information to an Unauthorized Actor
Primary references
- secure@microsoft.com — Patch, Vendor Advisory
- secure@microsoft.com — Tool Signature
- af854a3a-2127-422b-91ae-364da2661108 — Patch, Vendor Advisory
- af854a3a-2127-422b-91ae-364da2661108 — Tool Signature