CVE-2017-11813 is a memory corruption vulnerability in Internet Explorer across various Windows operating systems, including Windows 7, 8.1, and Server 2008 R2/2012 R2. This high-severity flaw (CVSS 7.5) allows an unauthenticated attacker to execute arbitrary code in the context of the current user, requiring user interaction and having high impact on confidentiality, integrity, and availability. While the vulnerability has a high FAUCET Risk Score of 88/100 and received media coverage, there is no evidence of active exploitation, nor are public exploit modules available in Metasploit or ExploitDB. Community discussion and media coverage indicate awareness, but it is not currently on the CISA KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11CPE matchmatch criteria | cpe:2.3:a:microsoft:internet_explorer:11:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.