HTTP: Microsoft Internet Explorer Malformed VBScript/JScript

This signature detects attempts to exploit a known vulnerability in Microsoft Internet Explorer's Jscript and VBscript Engines. A successful attack can result in information disclosure.

Extended Description

Microsoft VBScript and JScript scripting engines are prone to a remote information-disclosure vulnerability. Attackers can exploit this issue to gain access to sensitive information that may aid in further attacks. Attackers can exploit this issue by enticing an unsuspecting user to visit a specially crafted webpage.

Affected Products

Avaya aura_conferencing

References

BugTraq: 46139

CVE: CVE-2011-0031

Short Name
HTTP:STC:IE:MAL-VB-JSCRIPT
Severity
Minor
Recommended
False
Recommended Action
None
Category
HTTP
Keywords
CVE-2011-0031 Explorer Internet Malformed Microsoft VBScript/JScript bid:46139
Release Date
02/08/2011
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3336
False Positive
Rarely
Vendors

Microsoft

Avaya

CVSS Score

4.3

Found a potential security threat?