CVE-2015-0050

Microsoft Internet Explorer 8 and 9 - Remote Code Execution or Denial of Service via Memory Corruption

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2015-0050. PoCs published by Skylined.

AI-analyzed exploit summary This exploit demonstrates a memory read out-of-bounds vulnerability in Microsoft Internet Explorer 8 by manipulating the DOM with specific CSS and JavaScript. The issue is triggered by complex DOM manipulations but is noted as difficult to exploit due to limited side effects.

Description

Microsoft Internet Explorer 8 and 9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Internet Explorer Memory Corruption Vulnerability," a different vulnerability than CVE-2014-8967 and CVE-2015-0044.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Skylined · htmldoswindows
https://www.exploit-db.com/exploits/40841

This exploit demonstrates a memory read out-of-bounds vulnerability in Microsoft Internet Explorer 8 by manipulating the DOM with specific CSS and JavaScript. The issue is triggered by complex DOM manipulations but is noted as difficult to exploit due to limited side effects.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Complex
Reliability
Theoretical
Target: Microsoft Internet Explorer 8
No auth needed
Prerequisites: Target must visit a specially crafted web page · JavaScript must be enabled
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/72419
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1031723
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/539808/100/0/threaded
Various Sources x_refsource_misc
http://blog.skylined.nl/20161122001.html
Mailing List mailing-list x_refsource_fulldisc
http://seclists.org/fulldisclosure/2016/Nov/135
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/40841/

Scores

EPSS 0.5142
EPSS Percentile 98.0%

Details

CWE
CWE-399
Status published
Products (2)
microsoft/internet_explorer 8
microsoft/internet_explorer 9
Published Feb 11, 2015
Tracked Since Feb 18, 2026