Lucene search

K
attackerkbAttackerKBAKB:925F84D3-4FE0-4A18-BAA9-170C701E718D
HistoryMar 11, 2021 - 12:00 a.m.

CVE-2021-26411

2021-03-1100:00:00
attackerkb.com
136
cve-2021-26411
internet explorer
memory corruption
vulnerability
purple fox exploit kit
exploiting

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

EPSS

0.208

Percentile

96.5%

Internet Explorer Memory Corruption Vulnerability

Recent assessments:

ccondon-r7 at April 05, 2021 1:20pm UTC reported:

There is now public threat intelligence that the Purple Fox exploit kit has incorporated this vulnerability and is exploiting it.

gwillcox-r7 at March 11, 2021 5:57pm UTC reported:

There is now public threat intelligence that the Purple Fox exploit kit has incorporated this vulnerability and is exploiting it.

Assessed Attacker Value: 4
Assessed Attacker Value: 4Assessed Attacker Value: 4

CVSS2

7.6

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:H/Au:N/C:C/I:C/A:C

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

EPSS

0.208

Percentile

96.5%