Gravité: : Élevé
  Date du conseil: 04 février 2015

  Description

A flaw exists in Internet Explorer that allows a malicious web page to inject JavaScript code into a third-party frame, bypassing the Same-Origin Policy (SOP). This could allow an attacker to hijack sessions with third-party web sites.

  Information Exposure Rating:

Apply associated Trend Micro DPI Rules.

  Solutions

  Trend Micro Deep Security DPI Rule Number: 1006472
  Trend Micro Deep Security DPI Rule Name: 1006472 - Microsoft Internet Explorer Same Origin Policy Bypass Vulnerability