First published: Thu Jun 16 2016(Updated: )
Microsoft Internet Explorer 9 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0199 and CVE-2016-3211.
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Internet Explorer | =9 | |
Internet Explorer | =10 | |
Internet Explorer | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-0200 is rated as critical due to its potential to allow remote code execution and denial of service.
To mitigate CVE-2016-0200, users should apply the latest security updates from Microsoft for Internet Explorer.
CVE-2016-0200 affects Microsoft Internet Explorer versions 9, 10, and 11.
CVE-2016-0200 can be exploited through crafted websites that induce memory corruption in the affected versions of Internet Explorer.
While the best solution is to apply patches, users can temporarily mitigate the risk by using alternative browsers or disabling active scripting in Internet Explorer.