CVE-2017-0210

Summary

An elevation of privilege vulnerability exists when Internet Explorer does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain, aka "Internet Explorer Elevation of Privilege Vulnerability."

Severity
Medium
Severity Score

4.3

Vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

CWE-ID

NVD-CWE-noinfo

Vulnerability ID
CVE-2017-0210
Severity
Medium
Severity Score
4.3
Summary
An elevation of privilege vulnerability exists when Internet Explorer does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain, aka "Internet Explorer Elevation of Privilege Vulnerability."
References
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0210 http://www.securityfocus.com/bid/97512 http://www.securitytracker.com/id/1038238
Mitigation and Patches
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0210
Exploits
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0210 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0210 https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Metasploit Payload
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CWE ID
NVD-CWE-noinfo

See SecOps Solution
in action

Schedule Demo