AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-1258

MEDIUM · CVSS 4.3 EPSS 14.65%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2011-06-16 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-1258
Severity
MEDIUM
CVSS
4.3
EPSS
14.65%
Microsoft

Original NVD Description

Microsoft Internet Explorer 6 through 8 does not properly restrict web script, which allows user-assisted remote attackers to obtain sensitive information from a different (1) domain or (2) zone via vectors involving a drag-and-drop operation, aka "Drag and Drop Information Disclosure Vulnerability."