Direct naar de inhoud
Kritieke cyberalerts voor jouw sector & systemen — direct in je inbox. Aanmelden →
cybernieuws.nl Cybersecurity en informatiebeveiling nieuws alerts live · 3 min 98 bronnen 3 kritiek 32 vandaag
CVE's Videos

← Terug naar CVE-database

CVE-2012-4792

CRITICAL · 9.5 CVSS Gepubliceerd: CWE-416

Beschrijving

Microsoft Internet Explorer contains a use-after-free vulnerability that allows a remote attacker to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object.

Required action: The impacted product is end-of-life and should be disconnected if still in use.

Vendors

Microsoft

Affected products

Internet Explorer

References