CVE-2012-4792
30.12.2012, 18:55
Use-after-free vulnerability in Microsoft Internet Explorer 6 through 8 allows remote attackers to execute arbitrary code via a crafted web site that triggers access to an object that (1) was not properly allocated or (2) is deleted, as demonstrated by a CDwnBindInfo object, and exploited in the wild in December 2012.Enginsight
Vendor | Product | Version |
---|---|---|
microsoft | ie | 8.0 ≤ 𝑥 ≤ 8.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References