Description
Detects web content that exploits CVE-2012-1858, an improper sanitization flaw in Internet Explorer's toStaticHTML API. The flaw lets crafted event attributes and script survive the HTML sanitizer, so hostile markup executes in pages that trusted the API to strip scripts.