Stats
- First seen
- July 2024
- Last seen
- October 2026
Description
Detects web content that exploits CVE-2016-3298 and CVE-2017-0022, information disclosure flaws in Internet Explorer's XML parsing. The rule matches the metafile protocol references and parse error queries that public exploits use to read cross-origin error state from XML documents.