Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2009-2764Microsoft Internet Explorer vulnerability

3 documents3 sources
Severity
5.0MEDIUMNVD
EPSS
27.3%
top 3.57%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Affected products
Timeline
PublishedAug 14
Latest updateMay 2

Description

Microsoft Internet Explorer 8.0.7100.0 on Windows 7 RC on the x64 platform allows remote attackers to cause a denial of service (application crash) via a certain DIV element in conjunction with SCRIPT elements that have empty contents and no reference to a valid external script location.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-3rph-v6j3-hfch: Microsoft Internet Explorer 82022-05-02

💥Exploits & PoCs

1
Exploit-DB
Microsoft Internet Explorer 8.0.7100.0 - Simple HTML Remote Crash (PoC)2009-08-05
CVE-2009-2764 — Microsoft vulnerability | cvebase