CVE-2019-1426
7.5HIGH
Summary
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1427, CVE-2019-1428, CVE-2019-1429.
Affected Version(s)
ChakraCore = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 for 32-bit Systems = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 for x64-based Systems = unspecified
References
EPSS Score
2% chance of being exploited in the next 30 days.
CVSS V3.1
Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved
Collectors
NVD DatabaseMitre Database