CVE-2016-3298 Information
Feb 14, 2021
cve
Description
Microsoft Internet Explorer 9 through 11 and the Internet Messaging API in Windows Vista SP2 Windows Server 2008 SP2 and R2 SP1 and Windows 7 SP1 allow remote attackers to determine the existence of arbitrary files via a crafted web site aka \Internet Explorer Information Disclosure Vulnerability.\
CVSS Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
Reference
http://www.securityfocus.com/bid/93392 http://www.securitytracker.com/id/1036992 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-118 https://docs.microsoft.com/en-us/security-updates/securitybulletins/2016/ms16-126
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.3
Share on: