VULNERABILITY INTELLIGENCE
CVE-2012-10032
CVSS score8.7 HIGH
EPSS probability1.33%
CISA KEVNot currently listed
Published2025-08-05
Last modified2026-06-16
Description
Maxthon3 version 3.2.2 build 1000 and prior are vulnerable to cross context scripting (XCS) via the about:history page. The browser’s trusted zone improperly handles injected script content, allowing attackers to execute arbitrary JavaScript in a privileged context. This flaw enables modification of... .