CISA Known Exploited Vulnerability

CVE-2013-3897

Microsoft · Internet Explorer

Microsoft Internet Explorer Use-After-Free Vulnerability

Date added
BOD 22-01 due date
CWE CWE-399
Ransomware Unknown

CISA description

A use-after-free vulnerability exists within CDisplayPointer in Microsoft Internet Explorer that allows an attacker to remotely execute arbitrary code.

Required action

Apply updates per vendor instructions.