CVE-2011-3397

Description

The Microsoft Time component in DATIME.DLL in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted web site that leverages an unspecified binary behavior in Internet Explorer, aka Microsoft Time Remote Code Execution Vulnerability.

Risk Information

Base Score
8.8
MODERATE
Vector
AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
22.868

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for ActiveX Killbits for Windows XP (KB2618451)Windows
Security Update for ActiveX Killbits for Windows Server 2003 (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Vista (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Server 2008 (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows 7 (KB2618451) x86 based systemsWindows
Cumulative Security Update for ActiveX Killbits for Windows 7 (KB2618451) x86 based systems for SP1Windows
Cumulative Security Update for ActiveX Killbits for Windows XP x64 Edition (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Server 2003 x64 Edition (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Vista for x64-based Systems (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Server 2008 x64 Edition (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2618451) for SP1Windows
Cumulative Security Update for ActiveX Killbits for Windows Server 2008 R2 x64 Edition (KB2618451)Windows
Cumulative Security Update for ActiveX Killbits for Windows Server 2008 R2 x64 Edition (KB2618451) for SP1Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-11171Cumulative Security Update for ActiveX Killbits for Windows XP (KB2618451)
PATCH-11172Security Update for ActiveX Killbits for Windows Server 2003 (KB2618451)
PATCH-11173Cumulative Security Update for ActiveX Killbits for Windows Vista (KB2618451)
PATCH-11174Cumulative Security Update for ActiveX Killbits for Windows Server 2008 (KB2618451)
PATCH-11176Cumulative Security Update for ActiveX Killbits for Windows 7 (KB2618451)
PATCH-11177Cumulative Security Update for ActiveX Killbits for Windows XP x64 Edition (KB2618451)
PATCH-11178Cumulative Security Update for ActiveX Killbits for Windows Server 2003 x64 Edition (KB2618451)
PATCH-11179Cumulative Security Update for ActiveX Killbits for Windows Vista for x64-based Systems (KB2618451)
PATCH-11180Cumulative Security Update for ActiveX Killbits for Windows Server 2008 x64 Edition (KB2618451)
PATCH-11182Cumulative Security Update for ActiveX Killbits for Windows 7 for x64-based Systems (KB2618451)
PATCH-11184Cumulative Security Update for ActiveX Killbits for Windows Server 2008 R2 x64 Edition (KB2618451)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234