Overview
- Description
- Use-after-free vulnerability in the CMshtmlEd::Exec function in mshtml.dll in Microsoft Internet Explorer 6 through 9 allows remote attackers to execute arbitrary code via a crafted web site, as exploited in the wild in September 2012.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 9.3
- Impact score
- 10
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:C/I:C/A:C
Known exploits
Data from CISA
- Vulnerability name
- Microsoft Internet Explorer Use-After-Free Vulnerability
- Exploit added on
- Jun 8, 2022
- Exploit action due
- Jun 22, 2022
- Required action
- Apply updates per vendor instructions.
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:internet_explorer:6:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "693D3C1C-E3E4-49DB-9A13-44ADDFF82507" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:itanium:*", "vulnerable": false, "matchCriteriaId": "E59BD81A-2CF8-461B-81F7-A8ADBB15C5EC" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp2:*:*:professional:*:x64:*", "vulnerable": false, "matchCriteriaId": "C9FE4961-58EE-4DB2-B712-790CC2FA7996" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:internet_explorer:7:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "1A33FA7F-BB2A-4C66-B608-72997A2BD1DB" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:itanium:*", "vulnerable": false, "matchCriteriaId": "E59BD81A-2CF8-461B-81F7-A8ADBB15C5EC" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C0FF8237-FDB6-49C1-AC07-A0B72D5BFEC5" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:itanium:*", "vulnerable": false, "matchCriteriaId": "B8A2E738-7BBE-48BD-B075-08878829494C" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "47C1B51D-81DC-4E67-90D5-15073A478FC4" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0A0D2704-C058-420B-B368-372D1129E914" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF1AD1A1-EE20-4BCE-9EE6-84B27139811C" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "BADB0479-3E0E-4326-B568-9DBDCACF0B5E" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A52E757F-9B41-43B4-9D67-3FEDACA71283" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "DEB02D84-ADC8-4297-B388-D5BDA4EB4B82" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:*:*:x64:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CE381783-027E-4B6D-B801-59873E5EA483" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "F0931768-A4BD-4B42-840D-B098D504ECFE" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "7FE8B00B-4F39-4755-A323-8AD71F5E3EBE" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "058039EE-3B8F-4ED2-933E-4AFD53866002" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2003:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "E2635E7A-DEF8-4163-AE36-266B02A0ED95" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "C0FF8237-FDB6-49C1-AC07-A0B72D5BFEC5" }, { "criteria": "cpe:2.3:o:microsoft:windows_server:2008:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "47C1B51D-81DC-4E67-90D5-15073A478FC4" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:itanium:*", "vulnerable": false, "matchCriteriaId": "B20DD263-5A62-4CB1-BD47-D1F9A6C67E08" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "B7674920-AE12-4A25-BE57-34AEDDA74D76" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*", "vulnerable": false, "matchCriteriaId": "B320A104-9037-487E-BC9A-62B4A6B49FD0" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "0A0D2704-C058-420B-B368-372D1129E914" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "BF1AD1A1-EE20-4BCE-9EE6-84B27139811C" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:*:sp3:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "CE477A73-4EE4-41E9-8694-5A3D5DC88656" }, { "criteria": "cpe:2.3:o:microsoft:windows_xp:-:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "BADB0479-3E0E-4326-B568-9DBDCACF0B5E" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "C043EDDD-41BF-4718-BDCF-158BBBDB6360" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D56B932B-9593-44E2-B610-E4EB2143EB21" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:*:*:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "DEB02D84-ADC8-4297-B388-D5BDA4EB4B82" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "F0931768-A4BD-4B42-840D-B098D504ECFE" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:*:sp1:*:*:*:*:x86:*", "vulnerable": false, "matchCriteriaId": "198E2CF9-D9F6-45BC-92DC-3D06B398B741" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:-:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "A5C07306-D850-450E-B4D0-D3C3351A6FE9" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "7FE8B00B-4F39-4755-A323-8AD71F5E3EBE" }, { "criteria": "cpe:2.3:o:microsoft:windows_7:-:sp1:*:*:*:*:x86:*", "vulnerable": false, "matchCriteriaId": "06BBFA69-94E2-4BAB-AFD3-BC434B11D106" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:*:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "F8216946-5F76-48B9-91CC-207F657D7D3C" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:-:sp2:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "5F422A8C-2C4E-42C8-B420-E0728037E15C" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:*:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "B7674920-AE12-4A25-BE57-34AEDDA74D76" }, { "criteria": "cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "AF07A81D-12E5-4B1D-BFF9-C8D08C32FF4F" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:*", "vulnerable": false, "matchCriteriaId": "0161C884-70A5-4AD0-BD80-F0F7B3D8579E" }, { "criteria": "cpe:2.3:o:microsoft:windows_vista:sp2:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "9F916C0D-3B99-46F3-A7AE-BAF067361499" } ], "operator": "OR" } ], "operator": "AND" } ]