vendor:
Internet Explorer 8
by:
Asheesh Kumar Mani Tripathi
8,8
CVSS
HIGH
Stack Based Overflow
119
CWE
Product Name: Internet Explorer 8
Affected Version From: Internet Explorer 8
Affected Version To: Internet Explorer 8
Patch Exists: Yes
Related CWE: N/A
CPE: a:microsoft:internet_explorer:8
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2008
Internet Explorer 8 (Multitudinous looping )Denial of Service Exploit
The flaw exists within 'history go' ActiveX control which contains stack based overflow conditions. User interaction is required to exploit this vulnerability in that the target must visit a malicious web page.
Mitigation:
Update to the latest version of Internet Explorer 8 and ensure that all security patches are installed.