cbcvebase.
CVE-2015-1646
published 2015-04-14

CVE-2015-1646: Microsoft XML Core Services (aka MSXML) 3.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted DTD, aka…

PriorityP428medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
16.98%
96.7th percentile
Microsoft XML Core Services (aka MSXML) 3.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via a crafted DTD, aka "MSXML3 Same Origin Policy SFB Vulnerability."

Affected

1 ranges
VendorProductVersion rangeFixed in
microsoftxml_core_services
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.