CyberSec.Space Logo
CVEブラウザに戻る

CVE-2010-3962

Known Exploited (CISA KEV)HIGH
8.1
CVSS Severity Score
EPSS Score57.9520%
EPSS Percentile92.88th
Published2010年11月5日
Last Modified2026年4月22日

Vulnerability Description

Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors related to Cascading Style Sheets (CSS) token sequences and the clip attribute, aka an "invalid flag reference" issue or "Uninitialized Memory Corruption Vulnerability," as exploited in the wild in November 2010.

Affected Platforms (CPE)

📦
Microsoft

Internet Explorer

= 6
📦
Microsoft

Internet Explorer

= 7
📦
Microsoft

Internet Explorer

= 8

References & Advisories

関連する脆弱性情報