Lucene search

K
cveMitreCVE-2012-1526
HistoryAug 15, 2012 - 1:55 a.m.

CVE-2012-1526

2012-08-1501:55:01
CWE-119
mitre
web.nvd.nist.gov
118
cve-2012-1526
microsoft internet explorer
memory corruption
remote code execution

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.91

Percentile

98.9%

Microsoft Internet Explorer 6 and 7 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not initialized or (2) is deleted, aka “Layout Memory Corruption Vulnerability.”

Affected configurations

Nvd
Node
microsoftinternet_explorerMatch6
OR
microsoftinternet_explorerMatch7
VendorProductVersionCPE
microsoftinternet_explorer6cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*
microsoftinternet_explorer7cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

7.7

Confidence

Low

EPSS

0.91

Percentile

98.9%