CVE detail
CVE-2021-26411
Internet Explorer Memory Corruption Vulnerability
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 22.0 · diversity 13.0 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
8 source links · newest first
- 2nd May – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 2nd May, please download our Threat Intelligence Bulletin. Top Attacks and Breaches North Korean government connected group initiated in March 2022 a spear-phishing campaign against journalists who specialize in the North Korea coverage. The group used Goldbackdoor malware that is linked to malware families […]
vendorresearch.checkpoint.comMay 2, 2022, 2:43 PM - 15th November – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 15th November, please download our Threat Intelligence Bulletin. Top Attacks and Breaches Check Point Research notes a 178% increase in the number of malicious shopping websites, compared to the rest of the year, spotting over 5300 different malicious websites per week ahead of the […]
vendorresearch.checkpoint.comNov 15, 2021, 2:13 PM - NK-linked InkySquid APT leverages IE exploits in recent attacksSecurity Affairs
North Korea-linked InkySquid group leverages two Internet Explorer exploits to deliver a custom implant in attacks aimed at a South Korean online newspaper. Experts from cybersecurity firm Volexity reported that North Korea-linked InkySquid group (aka ScarCruft, APT37, Group123, and Reaper) leverages two Internet Explorer exploits to deliver a custom backdoor in watering hole attacks aimed at the […]
newssecurityaffairs.comAug 19, 2021, 6:47 AM - How Low-level Hackers Access High-end MalwareSecurityWeek
Hacking tool downloads from underground forums are increasing, and the tools are becoming more sophisticated; low-level hackers are gaining access to hacked versions of sophisticated tools; access broking is growing; and existing tools are repurposed for more aggressive attacks.
newswww.securityweek.comJul 29, 2021, 3:37 PM - 15th March – Threat Intelligence ReportCheck Point Research
For the latest discoveries in cyber research for the week of 8th March, please download our Threat Intelligence Bulletin. TOP ATTACKS AND BREACHES Security footage and live feed data of some 150,000 surveillance cameras has been accessed by a hacker collective. The data was managed by Verkada, a Silicon Valley startup. Breached cameras were located […]
vendorresearch.checkpoint.comMar 15, 2021, 6:58 PM - Microsoft’s March Patch Tuesday fixes 14 Critical flawsSecurity Affairs
Microsoft’s March Patch Tuesday security updates address 89 vulnerabilities in its products, 14 are listed as Critical and 75 are listed as Important in severity. Microsoft’s March Patch Tuesday security updates address 89 vulnerabilities in its products, including Microsoft Windows components, Azure and Azure DevOps, Azure Sphere, Internet Explorer and Edge (EdgeHTML), Exchange Server, Office […]
newssecurityaffairs.comMar 10, 2021, 8:16 AM - March 2021 Patch Tuesday: Microsoft fixes yet another actively exploited IE zero-dayHelp Net Security
As system administrators and security teams around the world are working on ascertaining whether they’ve been breached and compromised via vulnerable Microsoft Exchange Server installations, on this March 2021 Patch Tuesday: Microsoft has fixed 89 CVEs. Among those are the seven Microsoft Exchange flaws fixed last week, one Internet Explorer memory corruption flaw that’s being exploited in the wild, and one Windows Win32k EoP flaw that is publicly known Adobe has delivered security updates for … More →
newswww.helpnetsecurity.comMar 9, 2021, 7:33 PM - Microsoft Ships Massive Security Patch BundleSecurityWeek
It’s raining patches in the Microsoft Windows ecosystem.
newswww.securityweek.comMar 9, 2021, 7:07 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2020-0878CVSS 4.2 · Medium
<p>A remote code execution vulnerability exists in the way that Microsoft browsers access objects in memory. The vulnerability could corrupt memory in a way that could allow an at…
- CVE-2021-40449CVSS 7.8 · High
Win32k Elevation of Privilege Vulnerability
- CVE-2020-0674CVSS 7.5 · High
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerabi…
- CVE-2021-1647CVSS 7.8 · High
Microsoft Defender Remote Code Execution Vulnerability
KEV listed5 mentions - CVE-2020-17087CVSS 7.8 · High
Windows Kernel Local Elevation of Privilege Vulnerability
- CVE-2020-1380CVSS 7.8 · High
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer. The vulnerability could corrupt memory in such a…