PT-2016-2507 · Microsoft · Edge+1
Published
2016-07-12
·
Updated
2022-05-14
·
CVE-2016-3248
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 9 through 11
Microsoft Edge
Description
The vulnerability allows remote attackers to execute arbitrary code or cause a denial of service via a crafted web site. This issue is caused by memory corruption in the scripting engine. The estimated number of potentially affected devices is not provided.
Recommendations
For Microsoft Internet Explorer versions 9 through 11, update to a version that is not affected by this issue.
For Microsoft Edge, update to a version that is not affected by this issue.
As a temporary workaround, consider restricting access to web sites that could potentially exploit this vulnerability until a patch is available.
Fix
RCE
DoS
Buffer Overflow
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Edge
Internet Explorer