Published: 09/04/2019 Updated: 28/05/2019
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

A vulnerability in the scripting engine used by Microsoft Internet Explorer could allow an unauthenticated, remote malicious user to execute arbitrary code on a targeted system. The vulnerability is due to improper memory operations that are performed by the affected software. An attacker could exploit this vulnerability by persuading a user to access a link or file that submits malicious input to the affected software. A successful exploit could corrupt memory and allow the malicious user to execute arbitrary code with the privileges of the user. If the user has elevated privileges, the attacker could completely compromise the system. Microsoft has confirmed the vulnerability and released software updates.

Affected Products

Vendor Product Versions
MicrosoftInternet Explorer10, 11


