Lucene search

K
cveMicrosoftCVE-2021-26411
HistoryMar 11, 2021 - 4:15 p.m.

CVE-2021-26411

2021-03-1116:15:13
CWE-416
microsoft
web.nvd.nist.gov
1043
In Wild
51
internet explorer
memory corruption
vulnerability
cve-2021-26411
nvd

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

AI Score

8.1

Confidence

High

EPSS

0.04

Percentile

92.2%

Internet Explorer Memory Corruption Vulnerability

Affected configurations

Nvd
Vulners
Node
microsoftedgeMatch-
AND
microsoftwindows_10_1507Match-
OR
microsoftwindows_10_1607Match-
OR
microsoftwindows_10_1803Match-
OR
microsoftwindows_10_1809Match-
OR
microsoftwindows_10_1909Match-
OR
microsoftwindows_10_2004Match-
OR
microsoftwindows_10_20h2Match-
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-
Node
microsoftinternet_explorerMatch11-
AND
microsoftwindows_10_1507Match-
OR
microsoftwindows_10_1607Match-
OR
microsoftwindows_10_1803Match-
OR
microsoftwindows_10_1809Match-
OR
microsoftwindows_10_1909Match-
OR
microsoftwindows_10_2004Match-
OR
microsoftwindows_10_20h2Match-
OR
microsoftwindows_7Match-sp1
OR
microsoftwindows_8.1Match-
OR
microsoftwindows_rt_8.1Match-
OR
microsoftwindows_server_2008Matchr2sp1x64
OR
microsoftwindows_server_2012Match-
OR
microsoftwindows_server_2012Matchr2
OR
microsoftwindows_server_2016Match-
OR
microsoftwindows_server_2019Match-
Node
microsoftinternet_explorerMatch9
AND
microsoftwindows_server_2008Match-sp2
VendorProductVersionCPE
microsoftedge-cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*
microsoftwindows_10_1507-cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:*
microsoftwindows_10_1607-cpe:2.3:o:microsoft:windows_10_1607:-:*:*:*:*:*:*:*
microsoftwindows_10_1803-cpe:2.3:o:microsoft:windows_10_1803:-:*:*:*:*:*:*:*
microsoftwindows_10_1809-cpe:2.3:o:microsoft:windows_10_1809:-:*:*:*:*:*:*:*
microsoftwindows_10_1909-cpe:2.3:o:microsoft:windows_10_1909:-:*:*:*:*:*:*:*
microsoftwindows_10_2004-cpe:2.3:o:microsoft:windows_10_2004:-:*:*:*:*:*:*:*
microsoftwindows_10_20h2-cpe:2.3:o:microsoft:windows_10_20h2:-:*:*:*:*:*:*:*
microsoftwindows_server_2016-cpe:2.3:o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*
microsoftwindows_server_2019-cpe:2.3:o:microsoft:windows_server_2019:-:*:*:*:*:*:*:*
Rows per page:
1-10 of 191

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Internet Explorer 9",
    "cpes": [
      "cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows Server 2008 for 32-bit Systems Service Pack 2",
      "Windows Server 2008 for x64-based Systems Service Pack 2"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "publication",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Internet Explorer 11",
    "cpes": [
      "cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 10 Version 1803 for 32-bit Systems",
      "Windows 10 Version 1803 for x64-based Systems",
      "Windows 10 Version 1803 for ARM64-based Systems",
      "Windows 10 Version 1809 for 32-bit Systems",
      "Windows 10 Version 1809 for x64-based Systems",
      "Windows 10 Version 1809 for ARM64-based Systems",
      "Windows Server 2019",
      "Windows 10 Version 1909 for 32-bit Systems",
      "Windows 10 Version 1909 for x64-based Systems",
      "Windows 10 Version 1909 for ARM64-based Systems",
      "Windows 10 Version 1903 for x64-based Systems",
      "Windows 10 Version 1903 for ARM64-based Systems",
      "Windows 10 Version 2004 for 32-bit Systems",
      "Windows 10 Version 2004 for ARM64-based Systems",
      "Windows 10 Version 2004 for x64-based Systems",
      "Windows 10 Version 20H2 for 32-bit Systems",
      "Windows 10 Version 20H2 for ARM64-based Systems",
      "Windows 10 for 32-bit Systems",
      "Windows 10 for x64-based Systems",
      "Windows 10 Version 1607 for 32-bit Systems",
      "Windows 10 Version 1607 for x64-based Systems",
      "Windows 7 for 32-bit Systems Service Pack 1",
      "Windows 7 for x64-based Systems Service Pack 1",
      "Windows 8.1 for 32-bit systems",
      "Windows 8.1 for x64-based systems",
      "Windows RT 8.1",
      "Windows Server 2008 R2 for x64-based Systems Service Pack 1",
      "Windows Server 2012",
      "Windows Server 2012 R2",
      "Windows Server 2016"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "publication",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft Edge (EdgeHTML-based)",
    "cpes": [
      "cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Windows 10 Version 1803 for 32-bit Systems",
      "Windows 10 Version 1803 for x64-based Systems",
      "Windows 10 Version 1803 for ARM64-based Systems",
      "Windows 10 Version 1809 for 32-bit Systems",
      "Windows 10 Version 1809 for x64-based Systems",
      "Windows 10 Version 1809 for ARM64-based Systems",
      "Windows Server 2019",
      "Windows 10 Version 1909 for 32-bit Systems",
      "Windows 10 Version 1909 for x64-based Systems",
      "Windows 10 Version 1909 for ARM64-based Systems",
      "Windows 10 Version 1903 for x64-based Systems",
      "Windows 10 Version 1903 for ARM64-based Systems",
      "Windows 10 Version 2004 for 32-bit Systems",
      "Windows 10 Version 2004 for ARM64-based Systems",
      "Windows 10 Version 2004 for x64-based Systems",
      "Windows 10 Version 20H2 for 32-bit Systems",
      "Windows 10 Version 20H2 for ARM64-based Systems",
      "Windows 10 for 32-bit Systems",
      "Windows 10 for x64-based Systems",
      "Windows 10 Version 1607 for 32-bit Systems",
      "Windows 10 Version 1607 for x64-based Systems",
      "Windows Server 2016"
    ],
    "versions": [
      {
        "version": "1.0..0",
        "lessThan": "publication",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

Social References

More

CVSS2

5.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:H/Au:N/C:P/I:P/A:P

CVSS3

8.8

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L

AI Score

8.1

Confidence

High

EPSS

0.04

Percentile

92.2%