CVE-2015-2419
HIGH KEV RANSOMWAREMicrosoft Internet Explorer - Out-of-Bounds Write
Title source: ruleDescription
JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "JScript9 Memory Corruption Vulnerability."
Exploits (1)
References (3)
Scores
CVSS v3
8.8
EPSS
0.5486
EPSS Percentile
98.0%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CISA KEV
2022-03-28
VulnCheck KEV
2015-07-21
InTheWild.io
2022-03-28
ENISA EUVD
EUVD-2015-2512
Ransomware Use
Confirmed
CWE
CWE-787
Status
published
Products (2)
microsoft/internet_explorer
10
microsoft/internet_explorer
11
Published
Jul 14, 2015
KEV Added
Mar 28, 2022
Tracked Since
Feb 18, 2026