CVE-2016-3212Cross-site Scripting in Microsoft Internet Explorer

Severity
6.1MEDIUMNVD
EPSS
22.4%
top 4.16%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJun 16
Latest updateMay 14

Description

The XSS Filter in Microsoft Internet Explorer 9 through 11 does not properly identify JavaScript, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks via a crafted web site, aka "Internet Explorer XSS Filter Vulnerability."

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:NExploitability: 2.8 | Impact: 2.7

Affected Packages1 packages

🔴Vulnerability Details

3
GHSA
GHSA-vp2j-xqjh-hqj9: The XSS Filter in Microsoft Internet Explorer 9 through 11 does not properly identify JavaScript, which makes it easier for remote attackers to conduc2022-05-14
CVEList
CVE-2016-3212: The XSS Filter in Microsoft Internet Explorer 9 through 11 does not properly identify JavaScript, which makes it easier for remote attackers to conduc2016-06-16
VulnCheck
Microsoft Internet Explorer Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')2016

📋Vendor Advisories

1
Microsoft
Internet Explorer XSS Filter Vulnerability2016-06-14
CVE-2016-3212 — Cross-site Scripting in Microsoft | cvebase