9.3
CVE-2012-1529
- EPSS 20.2%
- Veröffentlicht 21.09.2012 21:55:01
- Zuletzt bearbeitet 16.06.2026 23:39:41
- Erkennungen
Use-after-free vulnerability in Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly initialized or (2) is deleted, aka "OnMove Use After Free Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version 8
Microsoft ≫ Internet Explorer Version 8 Update beta1
Microsoft ≫ Internet Explorer Version 8 Update beta2
Microsoft ≫ Internet Explorer Version 8 Update rc1
Microsoft ≫ Internet Explorer Version 9
Microsoft ≫ Internet Explorer Version 9 Update beta1
Microsoft ≫ Internet Explorer Version 9 Update rc1
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 20.2% | 0.971 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|
http://www.us-cert.gov/cas/techalerts/TA12-255A.html
http://www.securityfocus.com/bid/55641
http://www.securitytracker.com/id?1027555
https://docs.microsoft.com/en-us/security-updates/securitybulletins/2012/ms12-063
https://exchange.xforce.ibmcloud.com/vulnerabilities/78756
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15852