CVE-2017-8529
בינונית 6.5
תיאור (מקור, אנגלית)
Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, and Windows Server 2012 and R2 allow an attacker to detect specific files on the user's computer when affected Microsoft scripting engines do not properly handle objects in memory, aka "Microsoft Browser Information Disclosure Vulnerability".
מדדים
- CVSS 3.1
-
6.5 (MEDIUM)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N - CWE
- CWE-119
מוצרים מושפעים
microsoft: internet explorer; microsoft: windows 10; microsoft: windows 7; microsoft: windows 8.1; microsoft: windows rt 8.1; microsoft: windows server 2008; microsoft: windows server 2012; microsoft: windows server 2016; microsoft: edge
קישורים
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8529 PatchVendor Advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8529 PatchVendor Advisory
- http://www.securityfocus.com/bid/98953 Third Party AdvisoryVDB Entry
- http://www.securityfocus.com/bid/98953 Third Party AdvisoryVDB Entry