MS10-090: Cumulative Security Update for Internet Explorer (2416400)

This script is Copyright (C) 2010-2014 Tenable Network Security, Inc.


Synopsis :

Arbitrary code can be executed on the remote host through a web
browser.

Description :

The remote host is missing Internet Explorer (IE) Security Update
2416400.

The remote version of IE is affected by several vulnerabilities that
may allow an attacker to execute arbitrary code on the remote host.

See also :

http://technet.microsoft.com/en-us/security/bulletin/MS10-090

Solution :

Microsoft has released a set of patches for XP, 2003, Vista, 2008, 7,
and 2008 R2.

Risk factor :

High / CVSS Base Score : 9.3
(CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C)
CVSS Temporal Score : 7.7
(CVSS2#E:F/RL:OF/RC:C)
Public Exploit Available : true

Family: Windows : Microsoft Bulletins

Nessus Plugin ID: 51162 ()

Bugtraq ID: 44536
45255
45256
45259
45260
45261
45263

CVE ID: CVE-2010-3340
CVE-2010-3342
CVE-2010-3343
CVE-2010-3345
CVE-2010-3346
CVE-2010-3348
CVE-2010-3962