Stats
- First seen
- January 2022
- Last seen
- August 2026
Description
Detects web content that exploits CVE-2016-0186 and CVE-2016-0191, uninitialized pointer conditions in Internet Explorer's scripting engine that can allow code execution. The rule matches the proxy traps and array concatenation that public exploits use to reach the uninitialized object state.