Short Name |
HTTP:STC:IE:DEREF-OBJ-ACCESS |
---|---|
Severity |
High |
Recommended |
No |
Recommended Action |
Drop |
Category |
HTTP |
Keywords |
Microsoft Internet Explorer Dereferenced Object Access |
Release Date |
2010/10/11 |
Update Number |
1790 |
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-9.4+, srx-9.2+, srx-branch-9.4+, vsrx-12.1+ |
This signature detects attempts to exploit a known remote code execution vulnerability in Microsoft Internet Explorer. It exists in the way that Internet Explorer accesses an object that has not been correctly initialized or has been deleted. An attacker can exploit this by constructing a specially crafted Web page. When a user views the Web page, the vulnerability can allow remote code execution.
Microsoft Internet Explorer is prone to a remote code-execution vulnerability. Successful exploits will allow an attacker to run arbitrary code in the context of the user running the application. Failed attacks will cause denial-of-service conditions.