Memory Corruption Vulnerability in Microsoft Internet Explorer on Windows Products
CVE-2017-8609
7.5HIGH
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 11 July 2017
Summary
A vulnerability exists in Microsoft Internet Explorer and certain Windows 10 versions, where improper handling of objects in memory by the JavaScript engine may allow an attacker to execute arbitrary code within the context of the current user. If successfully exploited, this vulnerability could enable various malicious activities, including unauthorized access to the system.
Affected Version(s)
Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 Internet Explorer
References
EPSS Score
20% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved