Microsoft Internet Explorer 7 through 11 allows remote malicious users to execute arbitrary code and bypass a sandbox protection mechanism by leveraging "object confusion" in a broker process, as demonstrated by VUPEN during a Pwn2Own competition at CanSecWest 2014.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
microsoft internet explorer 7 |
||
microsoft internet explorer 8 |
||
microsoft internet explorer 9 |
||
microsoft internet explorer 10 |
||
microsoft internet explorer 11 |