CVE-2010-3962
Microsoft Internet Explorer: Uninitialized Memory Corruption
As of , CVE-2010-3962 in Microsoft Internet Explorer is on CISA's list of exploited vulnerabilities: CISA listed it on . Our patch-first group: Patch this week.
- Exploited
- Yes: CISA listed it on 6 October 2025
- US federal deadline
- 27 October 202521 days after CISA listed it. US federal civilian agencies must fix it by then.
- Used in ransomware campaigns
- Not known to CISA
- EPSS score
- 0.97Higher than 99% of the CVEs EPSS scores. EPSS estimates the chance of exploitation activity in the next 30 days.
- Public exploit
- 1 Metasploit module and 3 Exploit-DB entries (3 verified)
- Fix
- Vendor advice: learn.microsoft.comLinks below, from CISA's entry.
What CISA says to do
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
CISA's required action
What the flaw is
Microsoft Internet Explorer contains an uninitialized memory corruption vulnerability that could allow for remote code execution. The impacted product could be end-of-life (EoL) and/or end-of-service (EoS). Users should discontinue product utilization.
CISA's description
Use-after-free vulnerability in Microsoft Internet Explorer 6, 7, and 8 allows remote attackers to execute arbitrary code via vectors related to Cascading Style Sheets (CSS) token sequences and the clip attribute, aka an "invalid flag reference" issue or "Uninitialized Memory Corruption Vulnerability," as exploited in the wild in November 2010.
The CVE record's description, from microsoft
- CVE published
- 5 November 2010
- Assigned by
- microsoft
- CVSS
- 8.1 High (CVSS 3.1, from CISA-ADP)
- CWE-416
- Use After Free
- CISA SSVC, exploitation
- active
- CISA SSVC, automatable
- yes
- CISA SSVC, technical impact
- total
Timeline
- Exploit-DB published an exploit (EDB-ID 15418).
- Exploit-DB published an exploit (EDB-ID 15421).
- The CVE record was published.
- Exploit-DB published an exploit (EDB-ID 16551).
- CISA added it to its list of exploited vulnerabilities.
- The US federal deadline to fix it.
Public exploits
Facts from Metasploit's module list and Exploit-DB's index; we never copy exploit code.
- Metasploit: MS10-090 Microsoft Internet Explorer CSS SetUserClip Memory Corruptionexploit module, rank good
- Exploit-DB: Microsoft Internet Explorer - CSS SetUserClip Memory Corruption (MS10-090) (Metasploit)EDB-ID 16551, verified by Exploit-DB, 20 January 2011
- Exploit-DB: Microsoft Internet Explorer - Memory CorruptionEDB-ID 15418, verified by Exploit-DB, 4 November 2010
- Exploit-DB: Microsoft Internet Explorer 6/7/8 - Memory CorruptionEDB-ID 15421, verified by Exploit-DB, 4 November 2010
Internet Explorer: other exploited entries
| Vulnerability | Product | Our group | Listed | Deadline | EPSS |
|---|---|---|---|---|---|
| CVE-2010-0249Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.92; verified Exploit-DB entry | 0.92 | ||
| CVE-2010-0806Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.82; verified Exploit-DB entry | 0.82 | ||
| CVE-2013-3893Resource Management Errors | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.88; verified Exploit-DB entry | 0.88 | ||
| CVE-2012-4792Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.79; verified Exploit-DB entry | 0.79 | ||
| CVE-2013-3163Memory Corruption | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.71; verified Exploit-DB entry | 0.71 | ||
| CVE-2012-4969Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.80; verified Exploit-DB entry | 0.80 | ||
| CVE-2014-0322Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.85; verified Exploit-DB entry | 0.85 | ||
| CVE-2013-2551Use-After-Free | Microsoft Internet Explorer | Patch this weekRansomware use; Metasploit module; EPSS 0.74; verified Exploit-DB entry | 0.74 | ||
| CVE-2013-1347Remote Code Execution | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.78; verified Exploit-DB entry | 0.78 | ||
| CVE-2013-3897Use-After-Free | Microsoft Internet Explorer | Patch this weekMetasploit module; EPSS 0.77; verified Exploit-DB entry | 0.77 |
Read further
- CVE recordcve.org
- NVD entrynvd.nist.gov
- CISA's catalogcisa.gov
- EPSS for this CVEapi.first.org