CVSS2
Attack Vector
NETWORK
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:H/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
98.3%
Multiple serious vulnerabilities were found in Microsoft Browsers. Malicious users can exploit these vulnerabilities to execute arbitrary code, obtain sensitive information, gain privileges, spoof user interface.
Below is a complete list of vulnerabilities:
Public exploits exist for this vulnerability.
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
CVE-2018-8588 critical
CVE-2018-8557 critical
CVE-2018-8545 warning
CVE-2018-8542 critical
CVE-2018-8556 critical
CVE-2018-8543 critical
CVE-2018-8567 high
CVE-2018-8564 warning
CVE-2018-8541 critical
CVE-2018-8552 critical
CVE-2018-8570 critical
CVE-2018-8555 critical
CVE-2018-8551 critical
Install necessary updates from the KB section, that are listed in your Windows Update (Windows Update usually can be accessed from the Control Panel)
Arbitrary code execution. Exploitation of vulnerabilities with this impact can lead to executing by abuser any code or commands at vulnerable machine or process.
Obtain sensitive information. Exploitation of vulnerabilities with this impact can lead to capturing by abuser information, critical for user or system.
Privilege escalation. Exploitation of vulnerabilities with this impact can lead to performing by abuser actions, which are normally disallowed for current role.
Spoof user interface. Exploitation of vulnerabilities with this impact can lead to changes in user interface to beguile user into inaccurate behavior.
support.microsoft.com/kb/4466536
support.microsoft.com/kb/4467107
support.microsoft.com/kb/4467680
support.microsoft.com/kb/4467686
support.microsoft.com/kb/4467691
support.microsoft.com/kb/4467696
support.microsoft.com/kb/4467697
support.microsoft.com/kb/4467701
support.microsoft.com/kb/4467702
support.microsoft.com/kb/4467708
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8541
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8542
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8543
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8545
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8551
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8552
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8555
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8556
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8557
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8564
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8567
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8570
portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8588
statistics.securelist.com/
threats.kaspersky.com/en/class/Exploit/
threats.kaspersky.com/en/product/Microsoft-Edge/
threats.kaspersky.com/en/product/Microsoft-Internet-Explorer/
CVSS2
Attack Vector
NETWORK
Attack Complexity
HIGH
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:H/Au:N/C:C/I:C/A:C
CVSS3
Attack Vector
NETWORK
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality Impact
HIGH
Integrity Impact
HIGH
Availability Impact
HIGH
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
AI Score
Confidence
High
EPSS
Percentile
98.3%