← Browse

CVE-2016-3351

Act now ● On CISA KEV — actively exploited used in ransomware

Actively exploited — on the CISA KEV list.

CVSS base
6.5 MEDIUM
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS — probability of exploitation (30 days)
26.3%
97.9th percentile
CISA KEV
Listed
Added 2022-05-24 · patch by 2022-06-14
Weakness / dates
Published 2016-09-14 · modified 2026-08-14

Description

Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Microsoft Browser Information Disclosure Vulnerability."

Affected

microsoft

References

Official: NVD · CVE.org