Lucene search

K
zdiAnonymousZDI-09-011
HistoryFeb 10, 2009 - 12:00 a.m.

Microsoft Internet Explorer CFunctionPointer Memory Corruption Vulnerability

2009-02-1000:00:00
Anonymous
www.zerodayinitiative.com
22

EPSS

0.974

Percentile

99.9%

This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Microsoft Internet Explorer. User interaction is required to exploit this vulnerability in that the target must visit a malicious page. The specific flaw exists in the handling of document objects. When an object is appended and deleted in a specific order memory corruption occurs. Successful exploitation leads to remote compromise of the affected system under the credentials of the currently logged in user.