CVE-2009-1043

Microsoft Internet Explorer 8 - RCE

Title source: llm
STIX 2.1

Description

Unspecified vulnerability in Microsoft Internet Explorer 8 on Windows 7 allows remote attackers to execute arbitrary code via unknown vectors triggered by clicking on a link, as demonstrated by Nils during a PWN2OWN competition at CanSecWest 2009.

References (11)

Core 11
Core References
Various Sources x_refsource_misc
http://cansecwest.com/index.html
Various Sources x_refsource_misc
http://news.cnet.com/8301-1009_3-10199652-83.html
Various Sources x_refsource_misc
http://blogs.zdnet.com/security/?p=2934
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1021880
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/34182
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/49389
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/52892

Scores

EPSS 0.3057
EPSS Percentile 98.1%

Details

Status published
Products (1)
microsoft/internet_explorer 8
Published Mar 23, 2009
Tracked Since Feb 18, 2026