Memory Corruption Vulnerability in Microsoft Browsers
CVE-2019-0940
7.5HIGH
Key Information:
Summary
A vulnerability exists in Microsoft browsers that allows attackers to exploit memory management issues, enabling them to execute arbitrary code on the user's system. This flaw arises when the browser improperly handles objects in memory, leading to potential compromises of confidential information and unauthorized system control.
Affected Version(s)
Internet Explorer 10 Windows Server 2012
Internet Explorer 11 Windows 7 for 32-bit Systems Service Pack 1
Internet Explorer 11 Windows 7 for x64-based Systems Service Pack 1
References
EPSS Score
35% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved