9.3
CVSSv2

CVE-2015-0040

Published: 11/02/2015 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

Microsoft Internet Explorer 11 allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2015-0018, CVE-2015-0037, and CVE-2015-0066.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft internet explorer 11

Exploits

<!-- Source: blogskylinednl/20161114001html Synopsis A specially crafted web-page can cause MSIE 11 to interrupt the handling of one readystatechange event with another This interrupts a call to one of the various C<Element­Name>Element::Notify functions to make another such call and at least one of these functions is non-ree ...
A specially crafted web-page can cause MSIE 11 to interrupt the handling of one readystatechange event with another This interrupts a call to one of the various C<ElementName>Element::Notify functions to make another such call and at least one of these functions is non-reentrant This can have various repercussions, eg when an attacker tri ...