- Description
- Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in September 2012.
- Source
- cve@mitre.org
- NVD status
- Modified
CVSS 3.1
- Type
- Secondary
- Base score
- 8.1
- Impact score
- 5.9
- Exploitability score
- 2.2
- Vector string
- CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Data from CISA
- Vulnerability name
- Microsoft Internet Explorer Use-After-Free Vulnerability
- Exploit added on
- Jun 8, 2022
- Exploit action due
- Jun 22, 2022
- Required action
- Apply updates per vendor instructions.
- nvd@nist.gov
- NVD-CWE-Other
- 134c704f-9b21-4f2e-91b3-4a467353bcc0
- CWE-416
- Hype score
- Not currently trending
[
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "693D3C1C-E3E4-49DB-9A13-44ADDFF82507"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:itanium:*",
"vulnerable": false,
"matchCriteriaId": "E59BD81A-2CF8-461B-81F7-A8ADBB15C5EC"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:professional:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "C9FE4961-58EE-4DB2-B712-790CC2FA7996"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "1A33FA7F-BB2A-4C66-B608-72997A2BD1DB"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:itanium:*",
"vulnerable": false,
"matchCriteriaId": "E59BD81A-2CF8-461B-81F7-A8ADBB15C5EC"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "C0FF8237-FDB6-49C1-AC07-A0B72D5BFEC5"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:itanium:*",
"vulnerable": false,
"matchCriteriaId": "B8A2E738-7BBE-48BD-B075-08878829494C"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "47C1B51D-81DC-4E67-90D5-15073A478FC4"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "0A0D2704-C058-420B-B368-372D1129E914"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "BF1AD1A1-EE20-4BCE-9EE6-84B27139811C"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "BADB0479-3E0E-4326-B568-9DBDCACF0B5E"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "A52E757F-9B41-43B4-9D67-3FEDACA71283"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "DEB02D84-ADC8-4297-B388-D5BDA4EB4B82"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:*:x64:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CE381783-027E-4B6D-B801-59873E5EA483"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "F0931768-A4BD-4B42-840D-B098D504ECFE"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "7FE8B00B-4F39-4755-A323-8AD71F5E3EBE"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "C0FF8237-FDB6-49C1-AC07-A0B72D5BFEC5"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "47C1B51D-81DC-4E67-90D5-15073A478FC4"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:itanium:*",
"vulnerable": false,
"matchCriteriaId": "B20DD263-5A62-4CB1-BD47-D1F9A6C67E08"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "B7674920-AE12-4A25-BE57-34AEDDA74D76"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*",
"vulnerable": false,
"matchCriteriaId": "B320A104-9037-487E-BC9A-62B4A6B49FD0"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "0A0D2704-C058-420B-B368-372D1129E914"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "BF1AD1A1-EE20-4BCE-9EE6-84B27139811C"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "BADB0479-3E0E-4326-B568-9DBDCACF0B5E"
}
],
"operator": "OR"
}
],
"operator": "AND"
},
{
"nodes": [
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*",
"vulnerable": true,
"matchCriteriaId": "C043EDDD-41BF-4718-BDCF-158BBBDB6360"
}
],
"operator": "OR"
},
{
"negate": false,
"cpeMatch": [
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "D56B932B-9593-44E2-B610-E4EB2143EB21"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "DEB02D84-ADC8-4297-B388-D5BDA4EB4B82"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "F0931768-A4BD-4B42-840D-B098D504ECFE"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x86:*",
"vulnerable": false,
"matchCriteriaId": "198E2CF9-D9F6-45BC-92DC-3D06B398B741"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:-:-:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "A5C07306-D850-450E-B4D0-D3C3351A6FE9"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "7FE8B00B-4F39-4755-A323-8AD71F5E3EBE"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x86:*",
"vulnerable": false,
"matchCriteriaId": "06BBFA69-94E2-4BAB-AFD3-BC434B11D106"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:*:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "F8216946-5F76-48B9-91CC-207F657D7D3C"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "5F422A8C-2C4E-42C8-B420-E0728037E15C"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "B7674920-AE12-4A25-BE57-34AEDDA74D76"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*",
"vulnerable": false,
"matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E"
},
{
"criteria": "cpe:2.3:o:microsoft:windows_vista:sp2:*:*:*:*:*:*:*",
"vulnerable": false,
"matchCriteriaId": "9F916C0D-3B99-46F3-A7AE-BAF067361499"
}
],
"operator": "OR"
}
],
"operator": "AND"
}
]