Field Assessment
AI analysis pending.
Cross-Reference — CISA KEV
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Known
Added to KEV: 2022-05-24
Required action: Apply updates per vendor instructions.
CVE
CVE-2016-3351
Severity
MEDIUM
CVSS
6.5
EPSS
26.29%
Microsoft
Original Filing — NVD Description
Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to obtain sensitive information via a crafted web site, aka "Microsoft Browser Information Disclosure Vulnerability."