PT-2015-7126 · Microsoft · Internet Explorer

Publicado

2015-11-10

·

Atualizado

2018-10-12

·

CVE-2015-6089

CVSS v2.0

9.3

Alta

VetorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Internet Explorer versions 8 through 11
Description The issue allows remote attackers to execute arbitrary code or cause a denial of service due to memory corruption via a crafted web site. A remote code execution vulnerability exists in the way that the JScript and VBScript engines render when handling objects in memory in Internet Explorer. An attacker who successfully exploited the issue could gain the same user rights as the current user, potentially taking control of an affected system if the current user has administrative user rights.
Recommendations For Internet Explorer versions 8 through 11, update to a version that includes the fix for the scripting engine memory corruption issue to prevent remote code execution and denial of service attacks.

Correção

RCE

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2015-6089

Produtos afetados

Internet Explorer