Privilege escalation in Microsoft Edge and Microsoft Internet Explorer - CVE-2016-3292
Published: September 13, 2016 / Updated: February 14, 2017
Vulnerability details
The vulnerability exists due to improper checking of zone and integrity settings. A remote attacker can create a specially crafted content, trick the victim into opening it, escape the sandbox and gain elevated privileges.
Successful exploitation of this vulnerability results in information disclosure on the vulnerable system.
Affected software
Microsoft Internet Explorer