Microsoft Internet Explorer Multiple Vulnerabilities
Last Update Date:
14 Feb 2013 17:25
Release Date:
14 Feb 2013
4157
Views
RISK: High Risk
TYPE: Clients - Browsers
- Shift JIS Character Encoding Vulnerability
An information disclosure vulnerability exists in Internet Explorer that could allow an attacker to gain access to information in another domain or Internet Explorer zone. An attacker could exploit the vulnerability by constructing a specially crafted webpage that could allow information disclosure if a user viewed the webpage. An attacker who successfully exploited this vulnerability could view content from another domain or Internet Explorer zone. - VML Memory Corruption Vulnerability
A remote code execution vulnerability exists in the way that Internet Explorer handles objects in memory. An attacker could exploit the vulnerability by constructing a specially crafted webpage. When a user views the webpage, the vulnerability could allow remote code execution. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user.
Impact
- Remote Code Execution
System / Technologies affected
- Internet Explorer 6
- Internet Explorer 7
- Internet Explorer 8
- Internet Explorer 9
- Internet Explorer 10
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/en-us/security/bulletin/ms13-009
https://technet.microsoft.com/en-us/security/bulletin/ms13-010
Vulnerability Identifier
Source
Related Link
Share with