CVE-2021-26411

high

Description

Internet Explorer Memory Corruption Vulnerability

From the Tenable Blog

Microsoft’s March 2021 Patch Tuesday Addresses 82 CVEs (CVE-2021-26411)
Microsoft’s March 2021 Patch Tuesday Addresses 82 CVEs (CVE-2021-26411)

Published: 2021-03-09

In its March release, Microsoft addressed 82 CVEs, including a zero-day vulnerability in Internet Explorer that has been exploited in the wild and linked to a nation-state campaign targeting security researchers.

References

https://securelist.com/updated-mata-attacks-industrial-companies-in-eastern-europe/110829/

https://www.tenable.com/cyber-exposure/2021-threat-landscape-retrospective

https://www.tenable.com/blog/microsoft-s-march-2021-patch-tuesday-addresses-82-cves-cve-2021-26411

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2021-26411

Details

Source: Mitre, NVD

Published: 2021-03-11

Updated: 2024-11-21

Risk Information

CVSS v2

Base Score: 5.1

Vector: CVSS2#AV:N/AC:H/Au:N/C:P/I:P/A:P

Severity: Medium

CVSS v3

Base Score: 8.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High