VULNERABILITY INTELLIGENCE
CVE-2011-3397
CVSS score9.3 HIGH
EPSS probability19.54%
CISA KEVNot currently listed
Published2011-12-14
Last modified2026-06-16
Description
The Microsoft Time component in DATIME.DLL in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 allows remote attackers to execute arbitrary code via a crafted web site that leverages an unspecified "binary behavior" in Internet Explorer, aka "Microsoft Time Remote Code Execution Vulnerability."