Microsoft Internet Explorer before 10 allows remote attackers to obtain sensitive information about the existence of files, and read certain data from files, via a UNC share pathname in the SRC attribute of a SCRIPT element, as demonstrated by reading a name-value pair from a local file via a \127.0.0.1\C$\ sequence.
| Software | From | Fixed in |
|---|---|---|
| microsoft / internet_explorer | 7.0.5730 | 7.0.5730.x |
| microsoft / internet_explorer | 8 | 8.x |
| microsoft / internet_explorer | 6-sp1 | 6-sp1.x |
| microsoft / internet_explorer | 7 | 7.x |
| microsoft / internet_explorer | 6 | 6.x |
| microsoft / internet_explorer | 9 | 9.x |