Executive Summary
Informations | |||
---|---|---|---|
Name | CVE-2016-3388 | First vendor Publication | 2016-10-13 |
Vendor | Cve | Last vendor Modification | 2024-11-21 |
Security-Database Scoring CVSS v3
Cvss vector : CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:H/A:N | |||
---|---|---|---|
Overall CVSS Score | 5.3 | ||
Base Score | 5.3 | Environmental Score | 5.3 |
impact SubScore | 3.6 | Temporal Score | 5.3 |
Exploitabality Sub Score | 1.6 | ||
Attack Vector | Network | Attack Complexity | High |
Privileges Required | None | User Interaction | Required |
Scope | Unchanged | Confidentiality Impact | None |
Integrity Impact | High | Availability Impact | None |
Calculate full CVSS 3.0 Vectors scores |
Security-Database Scoring CVSS v2
Cvss vector : (AV:N/AC:H/Au:N/C:N/I:P/A:N) | |||
---|---|---|---|
Cvss Base Score | 2.6 | Attack Range | Network |
Cvss Impact Score | 2.9 | Attack Complexity | High |
Cvss Expoit Score | 4.9 | Authentication | None Required |
Calculate full CVSS 2.0 Vectors scores |
Detail
Microsoft Internet Explorer 10 and 11 and Microsoft Edge do not properly restrict access to private namespaces, which allows remote attackers to gain privileges via unspecified vectors, aka "Microsoft Browser Elevation of Privilege Vulnerability," a different vulnerability than CVE-2016-3387. |
Original Source
Url : http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2016-3388 |
CWE : Common Weakness Enumeration
% | Id | Name |
---|---|---|
100 % | CWE-264 | Permissions, Privileges, and Access Controls |
CPE : Common Platform Enumeration
Type | Description | Count |
---|---|---|
Application | 1 | |
Application | 2 |
Snort® IPS/IDS
Date | Description |
---|---|
2019-05-21 | Microsoft Internet Explorer eval type confusion attempt RuleID : 49863 - Revision : 1 - Type : BROWSER-IE |
2019-05-21 | Microsoft Internet Explorer eval type confusion attempt RuleID : 49862 - Revision : 1 - Type : BROWSER-IE |
2018-07-31 | Microsoft Edge array.join information disclosure attempt RuleID : 47066 - Revision : 1 - Type : BROWSER-IE |
2018-07-31 | Microsoft Edge array.join information disclosure attempt RuleID : 47065 - Revision : 1 - Type : BROWSER-IE |
2017-04-04 | Microsoft Internet Explorer loadXML parseError.errorCode information disclosu... RuleID : 41798 - Revision : 2 - Type : BROWSER-IE |
2017-04-04 | Microsoft Internet Explorer loadXML parseError.errorCode information disclosu... RuleID : 41797 - Revision : 2 - Type : BROWSER-IE |
2016-11-11 | Microsoft Windows Edge function.apply use afterfree attempt RuleID : 40424 - Revision : 2 - Type : BROWSER-IE |
2016-11-11 | Microsoft Windows Edge function.apply use afterfree attempt RuleID : 40423 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer readyState property information disclosure attempt RuleID : 40421 - Revision : 3 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer readyState property information disclosure attempt RuleID : 40420 - Revision : 3 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer eval type confusion attempt RuleID : 40405 - Revision : 6 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer eval type confusion attempt RuleID : 40404 - Revision : 6 - Type : BROWSER-IE |
2016-11-08 | Microsoft Windows Edge DACL privilege escalation attempt RuleID : 40397 - Revision : 2 - Type : OS-WINDOWS |
2016-11-08 | Microsoft Windows Edge DACL privilege escalation attempt RuleID : 40396 - Revision : 2 - Type : OS-WINDOWS |
2016-11-08 | Microsoft Internet Explorer vbscript variable type confusion attempt RuleID : 40386 - Revision : 3 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer vbscript variable type confusion attempt RuleID : 40385 - Revision : 3 - Type : BROWSER-IE |
2016-11-08 | Microsoft Edge array.join information disclosure attempt RuleID : 40384 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Edge array.join information disclosure attempt RuleID : 40383 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer iframe type confusion attempt RuleID : 40379 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer iframe type confusion attempt RuleID : 40378 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Windows insecure BoundaryDescriptor privilege escalation attempt RuleID : 40375 - Revision : 3 - Type : OS-WINDOWS |
2016-11-08 | Microsoft Windows insecure BoundaryDescriptor privilege escalation attempt RuleID : 40374 - Revision : 2 - Type : OS-WINDOWS |
2016-11-08 | Microsoft Windows Edge emodel use after free attempt RuleID : 40373 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Windows Edge emodel use after free attempt RuleID : 40372 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Edge spread operator memory corruption attempt RuleID : 40371 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Edge spread operator memory corruption attempt RuleID : 40370 - Revision : 2 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer ArraySpeciesCreate type confusion attempt RuleID : 40367 - Revision : 6 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer ArraySpeciesCreate type confusion attempt RuleID : 40366 - Revision : 6 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer loadXML parseError.errorCode information disclosu... RuleID : 40365 - Revision : 6 - Type : BROWSER-IE |
2016-11-08 | Microsoft Internet Explorer loadXML parseError.errorCode information disclosu... RuleID : 40364 - Revision : 6 - Type : BROWSER-IE |
Nessus® Vulnerability Scanner
Date | Description |
---|---|
2016-10-12 | Name : The remote host has a web browser installed that is affected by multiple vuln... File : smb_nt_ms16-118.nasl - Type : ACT_GATHER_INFO |
2016-10-12 | Name : The remote host is affected by an information disclosure vulnerability. File : smb_nt_ms16-126.nasl - Type : ACT_GATHER_INFO |
2016-10-11 | Name : The remote host has a web browser installed that is affected by multiple vuln... File : smb_nt_ms16-119.nasl - Type : ACT_GATHER_INFO |
Sources (Detail)
Alert History
Date | Informations |
---|---|
2024-11-28 12:55:24 |
|
2021-05-04 12:48:48 |
|
2021-04-22 01:59:42 |
|
2020-05-23 00:50:40 |
|
2018-10-13 05:19:03 |
|
2017-09-03 09:24:02 |
|
2017-07-30 12:02:00 |
|
2016-11-29 00:26:08 |
|
2016-10-18 05:23:22 |
|
2016-10-14 17:24:00 |
|
2016-10-14 09:23:50 |
|