9.3
CVSSv2

CVE-2014-6363

Published: 11/12/2014 Updated: 12/10/2018
CVSS v2 Base Score: 9.3 | Impact Score: 10 | Exploitability Score: 8.6
VMScore: 935
Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

vbscript.dll in Microsoft VBScript 5.6 up to and including 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability."

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft vbscript 5.6

microsoft vbscript 5.7

microsoft vbscript 5.8

microsoft internet_explorer 10

microsoft internet_explorer 11

microsoft internet_explorer 8

microsoft internet_explorer 9

microsoft internet_explorer 6

microsoft internet_explorer 7

Exploits

<!-- Source: blogskylinednl/20161107001html Synopsis A specially crafted script can cause the VBScript engine to access data before initializing it An attacker that is able to run such a script in any application that embeds the VBScript engine may be able to control execution flow and execute arbitrary code This includes all versi ...
A specially crafted script can cause the VBScript engine to access data before initializing it An attacker that is able to run such a script in any application that embeds the VBScript engine may be able to control execution flow and execute arbitrary code This includes all versions of Microsoft Internet Explorer ...