Netskope Threat Labs

BROWSER-IE Internet Explorer improper handling of event attributes and script by toStaticHTML API

IPS-SWG

1 SID: 170030

Detects web content that exploits CVE-2012-1858, an improper sanitization flaw in Internet Explorer's toStaticHTML API. The flaw lets crafted event attributes and script survive the HTML sanitizer, so hostile markup executes in pages that trusted the API to strip scripts.