PT-2015-1554 · Microsoft · Internet Explorer
Published
2015-07-14
·
Updated
2025-04-03
·
CVE-2015-2419
CVSS v2.0
9.3
High
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Microsoft Internet Explorer versions 10 through 11
Description
The issue is caused by a memory corruption vulnerability in the JScript 9 component of Microsoft Internet Explorer. This vulnerability can be exploited by a remote attacker via a crafted web site, allowing them to execute arbitrary code or cause a denial of service. An attacker who successfully exploits this vulnerability could gain the same user rights as the current user, potentially taking complete control of an affected system if the current user has administrative rights.
Recommendations
For Microsoft Internet Explorer versions 10 and 11, update to a newer version that contains a fix for this issue to prevent exploitation.
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
DoS
Buffer Overflow
Memory Corruption
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Internet Explorer