← All CVEs

CVE-2011-1347

high · 8.8

Unspecified vulnerability in Microsoft Internet Explorer 8 on Windows 7 allows remote attackers to bypass Protected Mode and create arbitrary files by leveraging access to a Low integrity process, as demonstrated by Stephen Fewer as the third of three chained vulnerabilities during a Pwn2Own competition at CanSecWest 2011.

8.8
CVSS
28.0%
EPSS (exploit prob.)
98th
EPSS percentile
2011-03-10
Published

AV:N/AC:M/Au:N/C:N/I:C/A:C

Affected products

VendorProductAffected versions
microsoftinternet_explorer8
microsoftwindows_7all versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2011-1347