7.6

CVE-2021-27085

Warnung

Internet Explorer Remote Code Execution Vulnerability

Internet Explorer Remote Code Execution Vulnerability
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Internet Explorer Version 11 Update -
   Microsoft ≫ Windows 10 1803 Version -
   Microsoft ≫ Windows 10 1809 Version -
   Microsoft ≫ Windows 10 1909 Version -
   Microsoft ≫ Windows 10 2004 Version -
   Microsoft ≫ Windows 10 20h2 Version -
   Microsoft ≫ Windows Server 2019 Version -

03.11.2021: CISA Known Exploited Vulnerabilities (KEV) Catalog

Microsoft Internet Explorer Remote Code Execution Vulnerability

Schwachstelle

Microsoft Internet Explorer contains an unspecified vulnerability that allows for remote code execution.

Beschreibung

Apply updates per vendor instructions.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 5.45% 0.921
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.6 4.9 10
AV:N/AC:H/Au:N/C:C/I:C/A:C
NIST 8.8 2.8 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Microsoft 8.8 2.8 5.3
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:H/A:L
Es wurden noch keine Informationen zu CWE veröffentlicht.
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2021-27085
Patch
Vendor Advisory
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-27085
Patch
Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2021-27085
US Government Resource