EXPOSURES › CVE-2010-3962
CVE-2010-3962
HIGH ⌖ ON CISA KEV · EXPLOITEDUninitialized memory corruption in IE allowed remote code execution.
Discontinued Microsoft Internet Explorer had a critical vulnerability that could be exploited remotely to execute arbitrary code, putting DIB systems at risk. Users should have ceased using the product but continued to do so, exposing their systems to potential attacks.
Shame score — Critical vulnerability in end-of-life product, actively exploited, and left unpatched.
▸ RECOMMENDED ACTION Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.
Microsoft Internet Explorer contains an uninitialized memory corruption vulnerability that could allow for remote code execution. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
| PRODUCT | STATUS |
|---|---|
| Azure Commercial Cloud Microsoft |
Authorized |
| Azure Government (includes Dynamics 365) Microsoft |
Authorized |
| Microsoft Office 365 GCC High Microsoft |
In Process |
| Office 365 Multi-Tenant & Supporting Services Microsoft |
Authorized |