PT-2016-2507 · Microsoft · Edge+1

Published

2016-07-12

·

Updated

2022-05-14

·

CVE-2016-3248

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Microsoft Internet Explorer versions 9 through 11 Microsoft Edge
Description The vulnerability allows remote attackers to execute arbitrary code or cause a denial of service via a crafted web site. This issue is caused by memory corruption in the scripting engine. The estimated number of potentially affected devices is not provided.
Recommendations For Microsoft Internet Explorer versions 9 through 11, update to a version that is not affected by this issue. For Microsoft Edge, update to a version that is not affected by this issue. As a temporary workaround, consider restricting access to web sites that could potentially exploit this vulnerability until a patch is available.

Fix

RCE

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2016-01898
CVE-2016-3248
GHSA-Q6MV-8VH9-4GGJ

Affected Products

Edge
Internet Explorer