CVE-2016-3298
Act now ● On CISA KEV — actively exploited
Actively exploited — on the CISA KEV list.
CVSS base
—
EPSS — probability of exploitation (30 days)
33.3%
98.3th percentile
CISA KEV
Listed
Added 2022-05-24 · patch by 2022-06-14
Weakness / dates
—
Published — · modified —
Description
An information disclosure vulnerability exists when the Microsoft Internet Messaging API improperly handles objects in memory. An attacker who successfully exploited this vulnerability could allow the attacker to test for the presence of files on disk.