Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xpg5-jv85-754h

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakOnColumnSpanningElement function in mshtml.dll, which allows remote attackers to execute arbitrary code via vectors involving a crafted Cascading Style Sheets (CSS) token sequence and crafted JavaScript code that operates on a TH element.

Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakOnColumnSpanningElement function in mshtml.dll, which allows remote attackers to execute arbitrary code via vectors involving a crafted Cascading Style Sheets (CSS) token sequence and crafted JavaScript code that operates on a TH element.

EPSS

Процентиль: 100%
0.9007
Критический

8.1 High

CVSS3

Дефекты

CWE-704
CWE-843

Связанные уязвимости

CVSS3: 8.1
nvd
больше 8 лет назад

Microsoft Internet Explorer 10 and 11 and Microsoft Edge have a type confusion issue in the Layout::MultiColumnBoxBuilder::HandleColumnBreakOnColumnSpanningElement function in mshtml.dll, which allows remote attackers to execute arbitrary code via vectors involving a crafted Cascading Style Sheets (CSS) token sequence and crafted JavaScript code that operates on a TH element.

CVSS3: 6.4
msrc
больше 8 лет назад

Microsoft Browser Memory Corruption Vulnerability

fstec
больше 8 лет назад

Уязвимость библиотеки mshtml.dll браузеров Internet Explorer и Microsoft Edge , позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 100%
0.9007
Критический

8.1 High

CVSS3

Дефекты

CWE-704
CWE-843