Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xvh2-pw6x-f8hh

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 8.1

Описание

Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in September 2012.

Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in September 2012.

EPSS

Процентиль: 100%
0.9184
Критический

8.1 High

CVSS3

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 8.1
nvd
больше 13 лет назад

Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in September 2012.

CVSS3: 9.8
fstec
больше 13 лет назад

Уязвимость функции CMshtmlEd::Exec (mshtml.dll) браузера Internet Explorer, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 100%
0.9184
Критический

8.1 High

CVSS3

Дефекты

CWE-416