Remote Code Execution Vulnerability in Microsoft Browser Scripting Engines
CVE-2017-0150

7.5HIGH

Key Information:

Vendor

Microsoft

Status
Vendor
CVE Published:
17 March 2017

What is CVE-2017-0150?

A vulnerability exists in Microsoft's scripting engines used in its browsers, where improper handling of objects in memory can lead to remote code execution. This flaw allows attackers to exploit the vulnerability and execute arbitrary code under the context of the current user. Successfully exploiting this vulnerability may grant the attacker the same permissions as the user, enabling the installation of programs, data manipulation, and creation of accounts with elevated privileges. It is crucial for users and organizations to be aware of this vulnerability to mitigate potential risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Browser Browser

References

EPSS Score

16% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.