Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
145615 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.809224
Categoría:Windows : Microsoft Bulletins
Título:Microsoft Internet Explorer Multiple Vulnerabilities (3183038)
Resumen:This host is missing a critical security; update according to Microsoft Bulletin MS16-104.
Descripción:Summary:
This host is missing a critical security
update according to Microsoft Bulletin MS16-104.

Vulnerability Insight:
Multiple flaws exist due to:

- An improper way of accessing objects in memory.

- When Internet Explorer fails a check, allowing sandbox escape.

- An improper way of handling cross-origin requests.

- An improper way of handling files from the Internet zone.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to execute arbitrary code in the context of the current user, also
could gain the same user rights as the current user, and obtain information
to further compromise the user's system.

Affected Software/OS:
Microsoft Internet Explorer version 9.x/10.x/11.x.

Solution:
The vendor has released updates. Please see the references for more information.

CVSS Score:
7.6

CVSS Vector:
AV:N/AC:H/Au:N/C:C/I:C/A:C

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2016-3247
BugTraq ID: 92828
http://www.securityfocus.com/bid/92828
Bugtraq: 20161118 CVE-2016-3247 Microsoft Edge CTextExtractor::GetBlockText OOB read details (Google Search)
http://www.securityfocus.com/archive/1/539779/100/0/threaded
https://www.exploit-db.com/exploits/40797/
http://seclists.org/fulldisclosure/2016/Nov/111
http://blog.skylined.nl/20161118002.html
Microsoft Security Bulletin: MS16-104
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-104
Microsoft Security Bulletin: MS16-105
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-105
http://www.securitytracker.com/id/1036788
http://www.securitytracker.com/id/1036789
Common Vulnerability Exposure (CVE) ID: CVE-2016-3291
BugTraq ID: 92834
http://www.securityfocus.com/bid/92834
Common Vulnerability Exposure (CVE) ID: CVE-2016-3292
BugTraq ID: 92808
http://www.securityfocus.com/bid/92808
Common Vulnerability Exposure (CVE) ID: CVE-2016-3295
BugTraq ID: 92830
http://www.securityfocus.com/bid/92830
Common Vulnerability Exposure (CVE) ID: CVE-2016-3297
BugTraq ID: 92829
http://www.securityfocus.com/bid/92829
Common Vulnerability Exposure (CVE) ID: CVE-2016-3324
BugTraq ID: 92809
http://www.securityfocus.com/bid/92809
https://www.exploit-db.com/exploits/40748/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3325
BugTraq ID: 92832
http://www.securityfocus.com/bid/92832
https://www.exploit-db.com/exploits/40747/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3351
BugTraq ID: 92788
http://www.securityfocus.com/bid/92788
https://www.brokenbrowser.com/detecting-apps-mimetype-malware/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3353
BugTraq ID: 92827
http://www.securityfocus.com/bid/92827
http://zerodayinitiative.com/advisories/ZDI-16-506/
Common Vulnerability Exposure (CVE) ID: CVE-2016-3375
BugTraq ID: 92835
http://www.securityfocus.com/bid/92835
Microsoft Security Bulletin: MS16-116
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-116
CopyrightCopyright (C) 2016 Greenbone AG

Esta es sólo una de 145615 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.