Information disclosure vulnerability in Internet Explorer - MS16-126ID: oval:org.secpod.oval:def:37486 | Date: (C)2016-10-13 (M)2023-05-15 |
Class: PATCH | Family: windows |
The host is missing an important security update according to Microsoft security bulletin, MS16-126. The update is required to fix an information disclosure vulnerability. A flaw is present in the application, which fails to properly handle session objects and kernel API enforced permissions. Successful exploitation could gain access to user account information that is not intended for the user.
Platform: |
Microsoft Windows 7 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |
Microsoft Windows Vista |