CyberSec.Space Logo
Back to CVE Browser

CVE-2010-3962

Known Exploited (CISA KEV)HIGH
8.1
CVSS Severity Score
EPSS Score57.9520%
EPSS Percentile92.88th
PublishedNov 5, 2010
Last ModifiedApr 22, 2026

Vulnerability Description

Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors related to Cascading Style Sheets (CSS) token sequences and the clip attribute, aka an "invalid flag reference" issue or "Uninitialized Memory Corruption Vulnerability," as exploited in the wild in November 2010.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Internet Explorer

= 6
πŸ“¦
Microsoft

Internet Explorer

= 7
πŸ“¦
Microsoft

Internet Explorer

= 8

References & Advisories

Related Vulnerabilities