← Browse

CVE-2016-3298

Act now ● On CISA KEV — actively exploited

Actively exploited — on the CISA KEV list.

CVSS base
EPSS — probability of exploitation (30 days)
33.3%
98.3th percentile
CISA KEV
Listed
Added 2022-05-24 · patch by 2022-06-14
Weakness / dates
Published — · modified —

Timeline

Description

An information disclosure vulnerability exists when the Microsoft Internet Messaging API improperly handles objects in memory. An attacker who successfully exploited this vulnerability could allow the attacker to test for the presence of files on disk.

Official: NVD · CVE.org