Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Jérôme Segura

Researcher fromMalwareBytes
#40645of 53,635
6.5Total CVSS
Vulnerabilities · 1
PT-2016-2746
6.5
2016-09-13
Microsoft · Edge · CVE-2016-3351
**Name of the Vulnerable Software and Affected Versions** Microsoft Internet Explorer versions 9 through 11 Microsoft Edge **Description** The issue allows remote attackers to obtain sensitive information via a crafted web site. This is due to the way the affected components handle objects in memory, which can be exploited by an attacker to further compromise a target system. Research indicates that this type of vulnerability is among those exploited by ransomware operators, highlighting its potential impact. **Recommendations** For Microsoft Internet Explorer versions 9 through 11, consider disabling the handling of objects in memory as a temporary workaround until a patch is available. For Microsoft Edge, restrict access to sensitive information to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.