Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.809224
Category:Windows : Microsoft Bulletins
Title:Microsoft Internet Explorer Multiple Vulnerabilities (3183038)
Summary:This host is missing a critical security; update according to Microsoft Bulletin MS16-104.
Description:Summary:
This host is missing a critical security
update according to Microsoft Bulletin MS16-104.

Vulnerability Insight:
Multiple flaws exist due to:

- An improper way of accessing objects in memory.

- When Internet Explorer fails a check, allowing sandbox escape.

- An improper way of handling cross-origin requests.

- An improper way of handling files from the Internet zone.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to execute arbitrary code in the context of the current user, also
could gain the same user rights as the current user, and obtain information
to further compromise the user's system.

Affected Software/OS:
Microsoft Internet Explorer version 9.x/10.x/11.x.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.6

CVSS Vector:
AV:N/AC:H/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-3247
BugTraq ID: 92828
http://www.securityfocus.com/bid/92828
Bugtraq: 20161118 CVE-2016-3247 Microsoft Edge CTextExtractor::GetBlockText OOB read details (Google Search)
http://www.securityfocus.com/archive/1/539779/100/0/threaded
https://www.exploit-db.com/exploits/40797/
http://seclists.org/fulldisclosure/2016/Nov/111
http://blog.skylined.nl/20161118002.html
Microsoft Security Bulletin: MS16-104
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-104
Microsoft Security Bulletin: MS16-105
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-105
http://www.securitytracker.com/id/1036788
http://www.securitytracker.com/id/1036789
Common Vulnerability Exposure (CVE) ID: CVE-2016-3291
BugTraq ID: 92834
http://www.securityfocus.com/bid/92834
Common Vulnerability Exposure (CVE) ID: CVE-2016-3292
BugTraq ID: 92808
http://www.securityfocus.com/bid/92808
Common Vulnerability Exposure (CVE) ID: CVE-2016-3295
BugTraq ID: 92830
http://www.securityfocus.com/bid/92830
Common Vulnerability Exposure (CVE) ID: CVE-2016-3297
BugTraq ID: 92829
http://www.securityfocus.com/bid/92829
Common Vulnerability Exposure (CVE) ID: CVE-2016-3324
BugTraq ID: 92809
http://www.securityfocus.com/bid/92809
https://www.exploit-db.com/exploits/40748/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3325
BugTraq ID: 92832
http://www.securityfocus.com/bid/92832
https://www.exploit-db.com/exploits/40747/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3351
BugTraq ID: 92788
http://www.securityfocus.com/bid/92788
https://www.brokenbrowser.com/detecting-apps-mimetype-malware/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3353
BugTraq ID: 92827
http://www.securityfocus.com/bid/92827
http://zerodayinitiative.com/advisories/ZDI-16-506/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3375
BugTraq ID: 92835
http://www.securityfocus.com/bid/92835
Microsoft Security Bulletin: MS16-116
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-116
CopyrightCopyright (C) 2016 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.