Lucene search

K
cveMicrosoftCVE-2010-1118
HistoryMar 25, 2010 - 9:00 p.m.

CVE-2010-1118

2010-03-2521:00:01
microsoft
web.nvd.nist.gov
34
cve-2010-1118
internet explorer
microsoft windows 7
remote code execution
use-after-free issue
pwn2own
cansecwest 2010
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.139

Percentile

95.7%

Unspecified vulnerability in Internet Explorer 8 on Microsoft Windows 7 allows remote attackers to execute arbitrary code via unknown vectors, possibly related to a use-after-free issue, as demonstrated by Peter Vreugdenhil during a Pwn2Own competition at CanSecWest 2010.

Affected configurations

Nvd
Node
microsoftinternet_explorerMatch8
AND
microsoftwindows_7
VendorProductVersionCPE
microsoftinternet_explorer8cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*
microsoftwindows_7*cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:*:*

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

Low

EPSS

0.139

Percentile

95.7%

Related for CVE-2010-1118