← All CVEs

CVE-2010-0247

high · 9.3

Microsoft Internet Explorer 5.01 SP4, 6, and 6 SP1 does not properly handle objects in memory, which allows remote attackers to execute arbitrary code by accessing an object that (1) was not properly initialized or (2) is deleted, leading to memory corruption, aka "Uninitialized Memory Corruption Vulnerability."

9.3
CVSS
19.0%
EPSS (exploit prob.)
97th
EPSS percentile
2010-01-22
Published

AV:N/AC:M/Au:N/C:C/I:C/A:C

Weaknesses

CWE-94

Affected products

VendorProductAffected versions
microsoftinternet_explorer6
microsoftwindows_2000all versions
microsoftinternet_explorer6
microsoftinternet_explorer6.0
microsoftinternet_explorer6.00.2462.0000
microsoftinternet_explorer6.00.2479.0006
microsoftinternet_explorer6.0.2600
microsoftinternet_explorer6.00.2600.0000
microsoftinternet_explorer6.0.2800
microsoftinternet_explorer6.0.2800.1106
microsoftinternet_explorer6.00.2800.1106
microsoftinternet_explorer6.0.2900
microsoftinternet_explorer6.0.2900.2180
microsoftinternet_explorer6.00.2900.2180
microsoftinternet_explorer6.00.3663.0000
microsoftinternet_explorer6.00.3718.0000
microsoftinternet_explorer6.00.3790.0000
microsoftinternet_explorer6.00.3790.1830
microsoftinternet_explorer6.00.3790.3959
microsoftwindows_server_2003all versions
microsoftwindows_xpall versions
microsoftwindows_xpall versions
microsoftwindows_xpall versions
microsoftinternet_explorer5.01
microsoftwindows_2000all versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2010-0247