CVE-2010-0249
Microsoft Internet Explorer Use-After-Free Vulnerability
8.8
CVSS 3.1
91.9 %
EPSS (current)
2026-05-20
KEV addition
No
Ransomware
Timeline
Publication, first public exploit and KEV addition on a day axis.
Key facts
Vendor / product: Microsoft / Internet Explorer
Published: 2010-01-15 · Due (CISA): 2026-06-03
CWE: CWE-416 · EU list: no
Exploit references (metadata only)
| Source | Reference | Title | Date |
|---|---|---|---|
| metasploit | exploit/windows/browser/ms10_002_aurora | exploit/windows/browser/ms10_002_aurora | 2010-01-14 |
| exploitdb | 11167 | Microsoft Internet Explorer 6 - 'Aurora' Memory Corruption (MS10-002) | 2010-01-17 |
| exploitdb | 16599 | Microsoft Internet Explorer - 'Aurora' Memory Corruption (MS10-002) (Metasploit) | 2010-07-12 |
References only — no downloads or instructions.