Cumulative Security Update for Internet Explorer 10 in Windows Server 2008 R2 x64 Edition (KB2829530)

Risk Information

Base Score
8.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
91.271%

CVE Information

Patch Details

Patch associated with this vulnerability is supported by ManageEngine.

Patch ID
13601

Patch Description
Cumulative Security Update for Internet Explorer 10 in Windows Server 2008 R2 x64 Edition (KB2829530)

References

http://blog.skylined.nl/20161207001.html
http://blog.skylined.nl/20161208001.html
http://h30499.www3.hp.com/t5/HP-Security-Research-Blog/Pwn2Own-2013/ba-p/5981157
http://packetstormsecurity.com/files/140092/Microsoft-Internet-Explorer-9-MSHTML-CDispNode-InsertSiblingNode-Use-After-Free.html
http://packetstormsecurity.com/files/140094/Microsoft-Internet-Explorer-MSHTML-CDispNode-InsertSiblingNode-Use-After-Free.html
http://technet.microsoft.com/security/bulletin/MS13-020
http://technet.microsoft.com/security/bulletin/MS13-037
http://twitter.com/thezdi/statuses/309452625173176320
http://twitter.com/VUPEN/statuses/309479075385327617
http://www.us-cert.gov/cas/techalerts/TA13-043B.html
http://www.us-cert.gov/ncas/alerts/TA13-134A
http://www.zerodayinitiative.com/advisories/ZDI-13-084/
https://www.exploit-db.com/exploits/40893/
https://www.exploit-db.com/exploits/40894/