CyberSec.Space Logo
Back to CVE Browser

CVE-2016-3298

Known Exploited (CISA KEV)MEDIUM
6.5
CVSS Severity Score
EPSS Score37.3890%
EPSS Percentile85.10th
PublishedOct 14, 2016
Last ModifiedApr 22, 2026

Vulnerability Description

Microsoft Internet Explorer 9 through 11 and the Internet Messaging API in Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, and Windows 7 SP1 allow remote attackers to determine the existence of arbitrary files via a crafted web site, aka "Internet Explorer Information Disclosure Vulnerability."

Affected Platforms (CPE)

πŸ“¦
Microsoft

Internet Explorer

= 9
πŸ“¦
Microsoft

Internet Explorer

= 10
πŸ“¦
Microsoft

Internet Explorer

= 11
πŸ’»
Microsoft

Windows 7

All versions
πŸ’»
Microsoft

Windows Server 2008

All versions
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Server 2008

= r2
πŸ’»
Microsoft

Windows Vista

All versions

References & Advisories

Related Vulnerabilities