CVE-2015-0032
CVE information
Published
Last Modified
CVSSv2.0 Severity
Impact Analysis
Description
vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 8 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "VBScript Memory Corruption Vulnerability.".
CVSSv2.0 Score
- Severity
- High
- Base Score
- 9.3/10
- Exploit Score
- 8.6/10
- Access Vector
- Network
- Access Complexity
- Medium
- Authentication Required
- None
- Impact Score
- 10/10
- Confidentiality Impact
- Complete
- Availability Impact
- Complete
- Integrity Impact
- Complete
Products Affected
CPE | Affected | Vulnerable | Excluding | Edit |
---|---|---|---|---|
cpe:2.3:a:microsoft:vbscript:5.6:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:vbscript:5.8:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:vbscript:5.7:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:* |
Yes
|
- | ||
cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:* |
Yes
|
- |
Get started for free to scan for vulnerabilities
Companies of all sizes use Mageni to scan their assets for vulnerabilities. Mageni is free for 7-days then $39 USD Monthly regardless of how many IPs, scans, deployments or users you have. Cancel at Anytime and 7-days Money-Back Guarantee. Developed and supported by certified CompTIA PenTest+ professionals. Mageni contributes 1% of your subscription to removing CO₂ from the atmosphere.
Get Started For Free