CVE-2016-3351

MEDIUM KEV RANSOMWARE

Microsoft Internet Explorer - Information Disclosure

Title source: rule

Description

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Microsoft Browser Information Disclosure Vulnerability."

Scores

CVSS v3 6.5
EPSS 0.4029
EPSS Percentile 97.3%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

Exploitation Intel

CISA KEV 2022-05-24
VulnCheck KEV 2016-09-13
InTheWild.io 2016-09-13
ENISA EUVD EUVD-2016-4382
Ransomware Use Confirmed

Classification

Status published

Affected Products (5)

n/a/n/a
microsoft/internet_explorer
microsoft/internet_explorer
microsoft/internet_explorer
microsoft/edge

Timeline

Published Sep 14, 2016
KEV Added May 24, 2022
Tracked Since Feb 18, 2026