CVE-2013-3126Improper Restriction of Operations within the Bounds of a Memory Buffer in Microsoft Internet Explorer

Severity
9.3CRITICALNVD
EPSS
10.8%
top 6.60%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 12
Latest updateMay 14

Description

Microsoft Internet Explorer 9 and 10, when script debugging is enabled, does not properly handle objects in memory during the processing of script, which allows remote attackers to execute arbitrary code via a crafted web site, aka "Internet Explorer Script Debug Vulnerability."

CVSS vector

AV:N/AC:M/C:C/I:C/A:CExploitability: 8.6 | Impact: 10.0

Affected Packages1 packages

🔴Vulnerability Details

1
GHSA
GHSA-9qc7-r7p9-f8jp: Microsoft Internet Explorer 9 and 10, when script debugging is enabled, does not properly handle objects in memory during the processing of script, wh2022-05-14

🕵️Threat Intelligence

2
Talos
Microsoft Update Tuesday, June 2013: mostly about Internet Explorer2013-06-11
Talos
Microsoft Update Tuesday, June 2013: mostly about Internet Explorer2013-06-11
CVE-2013-3126 — Microsoft vulnerability | cvebase