CVE-2011-1257Race Condition in Microsoft Internet Explorer

CWE-362Race Condition3 documents3 sources
Severity
7.6HIGHNVD
EPSS
5.5%
top 9.79%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedAug 10
Latest updateMay 13

Description

Race condition in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors involving access to an object, aka "Window Open Race Condition Vulnerability."

CVSS vector

AV:N/AC:H/C:C/I:C/A:CExploitability: 4.9 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

1
GHSA
GHSA-xwvm-474m-8395: Race condition in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code or cause a denial of service (memory corru2022-05-13

🕵️Threat Intelligence

1
Zscaler
Zscaler detects IE Vulnerabilities | 08-09-2011
CVE-2011-1257 — Race Condition in Microsoft | cvebase