Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hj95-cvvq-rc83

Опубликовано: 02 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.8

Описание

Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (1) incorrectly initialized or (2) deleted, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "Uninitialized Memory Corruption Vulnerability."

Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (1) incorrectly initialized or (2) deleted, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "Uninitialized Memory Corruption Vulnerability."

EPSS

Процентиль: 98%
0.59201
Средний

8.8 High

CVSS3

Дефекты

CWE-908

Связанные уязвимости

CVSS3: 8.8
nvd
больше 17 лет назад

Microsoft Internet Explorer 6 does not properly handle errors related to using the componentFromPoint method on xml objects that have been (1) incorrectly initialized or (2) deleted, which allows remote attackers to execute arbitrary code via a crafted HTML document, aka "Uninitialized Memory Corruption Vulnerability."

EPSS

Процентиль: 98%
0.59201
Средний

8.8 High

CVSS3

Дефекты

CWE-908