Executive Summary

Informations
Name MS99-012 First vendor Publication N/A
Vendor Microsoft Last vendor Modification N/A
Severity (Vendor) N/A Revision N/A

Security-Database Scoring CVSS v3

Cvss vector : N/A
Overall CVSS Score NA
Base Score NA Environmental Score NA
impact SubScore NA Temporal Score NA
Exploitabality Sub Score NA
 
Calculate full CVSS 3.0 Vectors scores

Security-Database Scoring CVSS v2

Cvss vector : (AV:N/AC:L/Au:N/C:P/I:P/A:P)
Cvss Base Score 7.5 Attack Range Network
Cvss Impact Score 6.4 Attack Complexity Low
Cvss Expoit Score 10 Authentication None Required
Calculate full CVSS 2.0 Vectors scores

Detail

MSHTML Update Available for Internet Explorer

CPE : Common Platform Enumeration

TypeDescriptionCount
Application 4

Open Source Vulnerability Database (OSVDB)

Id Description
7841 Microsoft IE Scriptlet Component Arbitrary File Access

6080 Microsoft IE MSHTML.DLL Cross-Frame Script Execution

5965 Microsoft IE MSHTML.DLL IMG SRC Tag Information Disclosure

Microsoft Internet Explorer contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a malicious HTML file contains an IMG SRC tag that doesn't point to an image file. The document object model of Internet Explorer can then be exploited to reveil information not otherwise available leading to a loss of confidentiality.