Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, and Windows Server 2012 and R2 allow an attacker to detect specific files on the user's computer when affected Microsoft scripting engines do not properly handle objects in memory, aka "Microsoft Browser Information Disclosure Vulnerability".
CVSS Details
- CVSS 3.1 Base Score: 6.5
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Msft | — | Cumulative Security Update for Internet Explorer 10 for Windows Embedded 8 Standard for x64-based Systems (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4038781) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 10 for Windows Server 2012 (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows Embedded Standard 7 for x64-based Systems (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1703 for x86-based Systems (KB4038788) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows Embedded Standard 7 (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4038781) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4038782) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows 8.1 (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based Systems (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1511 for x64-based Systems (KB4038783) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows Server 2016 for x64-based Systems (KB4038782) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based Systems (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 11 for Windows 7 (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 8 for WES09 and POSReady 2009 (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4038782) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1511 for x86-based Systems (KB4038783) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 x64 Edition (KB4036586) - Additional configuration needed for CVE-2017-8529Cumulative Security Update for Internet Explorer 10 for Windows Embedded 8 Standard (KB4036586) - Additional configuration needed for CVE-2017-85292017-09 Cumulative Update for Windows 10 Version 1703 for x64-based Systems (KB4038788) - Additional configuration needed for CVE-2017-8529 | Jul 10, 2018 | Jun 13, 2017 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub