Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6h76-2q8f-58j3

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Race condition in Microsoft Internet Explorer allows user-assisted attackers to overwrite arbitrary files and possibly execute code by tricking a user into performing a drag-and-drop action from certain objects, such as file objects within a folder view, then predicting the drag action, and re-focusing to a malicious window.

Race condition in Microsoft Internet Explorer allows user-assisted attackers to overwrite arbitrary files and possibly execute code by tricking a user into performing a drag-and-drop action from certain objects, such as file objects within a folder view, then predicting the drag action, and re-focusing to a malicious window.

EPSS

Процентиль: 93%
0.1023
Средний

Дефекты

CWE-362

Связанные уязвимости

nvd
около 20 лет назад

Race condition in Microsoft Internet Explorer allows user-assisted attackers to overwrite arbitrary files and possibly execute code by tricking a user into performing a drag-and-drop action from certain objects, such as file objects within a folder view, then predicting the drag action, and re-focusing to a malicious window.

EPSS

Процентиль: 93%
0.1023
Средний

Дефекты

CWE-362