PT-2017-1865 · Microsoft · Internet Explorer

Published

2017-04-11

·

Updated

2025-02-11

·

CVE-2017-0210

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Internet Explorer (affected versions not specified)
Description The issue is related to insufficient access control in Internet Explorer, allowing a remote attacker to elevate their privileges. This can enable the attacker to access information from one domain and inject it into another. The vulnerability does not allow arbitrary code execution on its own but can be used in conjunction with other vulnerabilities, such as remote code execution vulnerabilities, to take advantage of elevated privileges when running arbitrary code.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Weakness Enumeration

Related Identifiers

BDU:2017-01021
CVE-2017-0210

Affected Products

Internet Explorer