CVE ID | CVE-2016-0159 |
CVSS SCORE | 6.8, AV:N/AC:M/Au:N/C:P/I:P/A:P |
AFFECTED VENDORS |
Microsoft |
AFFECTED PRODUCTS |
Internet Explorer |
VULNERABILITY DETAILS |
The vulnerability relates to how Internet Explorer keeps track of table rows when performing layout of HTML tables. By manipulating a document's elements an attacker can cause Internet Explorer to write beyond the end of an array of pointers to CTableRow objects. An attacker can leverage this vulnerability to execute code under the context of the current process. |
ADDITIONAL DETAILS |
Microsoft has issued an update to correct this vulnerability. More details can be found at:
https://technet.microsoft.com/library/security/MS16-037 |
DISCLOSURE TIMELINE |
|
CREDIT | B6BEB4D5E828CF0CCB47BB24AAC22515 |