CVE-2010-1118
high · 10Unspecified vulnerability in Internet Explorer 8 on Microsoft Windows 7 allows remote attackers to execute arbitrary code via unknown vectors, possibly related to a use-after-free issue, as demonstrated by Peter Vreugdenhil during a Pwn2Own competition at CanSecWest 2010.
10
CVSS
21.9%
EPSS (exploit prob.)
98th
EPSS percentile
2010-03-25
Published
AV:N/AC:L/Au:N/C:C/I:C/A:C
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | internet_explorer | 8 |
| microsoft | windows_7 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://dvlabs.tippingpoint.com/blog/2010/02/15/pwn2own-2010
- http://news.cnet.com/8301-27080_3-20001126-245.html
- http://twitter.com/thezdi/statuses/11003801960
- http://vreugdenhilresearch.nl/Pwn2Own-2010-Windows7-InternetExplorer8.pdf
- https://exchange.xforce.ibmcloud.com/vulnerabilities/57197
- http://dvlabs.tippingpoint.com/blog/2010/02/15/pwn2own-2010
- http://news.cnet.com/8301-27080_3-20001126-245.html
- http://twitter.com/thezdi/statuses/11003801960
- http://vreugdenhilresearch.nl/Pwn2Own-2010-Windows7-InternetExplorer8.pdf
- https://exchange.xforce.ibmcloud.com/vulnerabilities/57197
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2010-1118