Lucene search

K
cve[email protected]CVE-2019-0676
HistoryMar 06, 2019 - 12:00 a.m.

CVE-2019-0676

2019-03-0600:00:00
web.nvd.nist.gov
871
In Wild
cve
2019
0676
internet explorer
memory handling
vulnerability
nvd
information disclosure

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

7.2 High

AI Score

Confidence

High

0.02 Low

EPSS

Percentile

88.9%

An information disclosure vulnerability exists when Internet Explorer improperly handles objects in memory.An attacker who successfully exploited this vulnerability could test for the presence of files on disk, aka ‘Internet Explorer Information Disclosure Vulnerability’.

Affected configurations

Vulners
NVD
Node
microsoftinternet_explorer_11MatchWindows 7 for 32-bit Systems Service Pack 1
OR
microsoftinternet_explorer_11MatchWindows 7 for x64-based Systems Service Pack 1
OR
microsoftinternet_explorer_11MatchWindows Server 2008 R2 for x64-based Systems Service Pack 1
OR
microsoftinternet_explorer_11MatchWindows 8.1 for 32-bit systems
OR
microsoftinternet_explorer_11MatchWindows 8.1 for x64-based systems
OR
microsoftinternet_explorer_11MatchWindows Server 2012 R2
OR
microsoftinternet_explorer_11MatchWindows RT 8.1
OR
microsoftinternet_explorer_11MatchWindows 10 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows Server 2016
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1607 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1607 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1703 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1703 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1709 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1709 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1803 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1803 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1803 for ARM64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1809 for 32-bit Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1809 for x64-based Systems
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1809 for ARM64-based Systems
OR
microsoftinternet_explorer_11MatchWindows Server 2019
OR
microsoftinternet_explorer_11MatchWindows 10 Version 1709 for ARM64-based Systems
OR
microsoftinternet_explorer_10MatchWindows Server 2012
VendorProductVersionCPE
microsoftinternet_explorer_11Windows 7 for 32-bit Systems Service Pack 1cpe:2.3:a:microsoft:internet_explorer_11:Windows 7 for 32-bit Systems Service Pack 1:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows 7 for x64-based Systems Service Pack 1cpe:2.3:a:microsoft:internet_explorer_11:Windows 7 for x64-based Systems Service Pack 1:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows Server 2008 R2 for x64-based Systems Service Pack 1cpe:2.3:a:microsoft:internet_explorer_11:Windows Server 2008 R2 for x64-based Systems Service Pack 1:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows 8.1 for 32-bit systemscpe:2.3:a:microsoft:internet_explorer_11:Windows 8.1 for 32-bit systems:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows 8.1 for x64-based systemscpe:2.3:a:microsoft:internet_explorer_11:Windows 8.1 for x64-based systems:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows Server 2012 R2cpe:2.3:a:microsoft:internet_explorer_11:Windows Server 2012 R2:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows RT 8.1cpe:2.3:a:microsoft:internet_explorer_11:Windows RT 8.1:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows 10 for 32-bit Systemscpe:2.3:a:microsoft:internet_explorer_11:Windows 10 for 32-bit Systems:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows 10 for x64-based Systemscpe:2.3:a:microsoft:internet_explorer_11:Windows 10 for x64-based Systems:*:*:*:*:*:*:*
microsoftinternet_explorer_11Windows Server 2016cpe:2.3:a:microsoft:internet_explorer_11:Windows Server 2016:*:*:*:*:*:*:*
Rows per page:
1-10 of 251

CNA Affected

[
  {
    "product": "Internet Explorer 11",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "Windows 7 for 32-bit Systems Service Pack 1"
      },
      {
        "status": "affected",
        "version": "Windows 7 for x64-based Systems Service Pack 1"
      },
      {
        "status": "affected",
        "version": "Windows Server 2008 R2 for x64-based Systems Service Pack 1"
      },
      {
        "status": "affected",
        "version": "Windows 8.1 for 32-bit systems"
      },
      {
        "status": "affected",
        "version": "Windows 8.1 for x64-based systems"
      },
      {
        "status": "affected",
        "version": "Windows Server 2012 R2"
      },
      {
        "status": "affected",
        "version": "Windows RT 8.1"
      },
      {
        "status": "affected",
        "version": "Windows 10 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows Server 2016"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1607 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1607 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1703 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1703 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1709 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1709 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1803 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1803 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1803 for ARM64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1809 for 32-bit Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1809 for x64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1809 for ARM64-based Systems"
      },
      {
        "status": "affected",
        "version": "Windows Server 2019"
      },
      {
        "status": "affected",
        "version": "Windows 10 Version 1709 for ARM64-based Systems"
      }
    ]
  },
  {
    "product": "Internet Explorer 10",
    "vendor": "Microsoft",
    "versions": [
      {
        "status": "affected",
        "version": "Windows Server 2012"
      }
    ]
  }
]

4.3 Medium

CVSS2

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

NONE

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:N/A:N

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

7.2 High

AI Score

Confidence

High

0.02 Low

EPSS

Percentile

88.9%