CVE-2013-4015

high

Description

Microsoft Internet Explorer 6 through 10 allows local users to bypass the elevation policy check in the (1) Protected Mode or (2) Enhanced Protected Mode protection mechanism, and consequently gain privileges, by leveraging the ability to execute sandboxed code.

References

https://exchange.xforce.ibmcloud.com/vulnerabilities/85762

https://docs.microsoft.com/en-us/security-updates/securitybulletins/2013/ms13-055

Details

Source: Mitre, NVD

Published: 2013-07-26

Updated: 2018-10-12

Risk Information

CVSS v2

Base Score: 6.9

Vector: CVSS2#AV:L/AC:M/Au:N/C:C/I:C/A:C

Severity: Medium

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Severity: High