CVE-2015-2482

Microsoft Jscript - Memory Corruption

Title source: rule

Description

The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted replace operation with a JavaScript regular expression, aka "Scripting Engine Memory Corruption Vulnerability."

Exploits (1)

exploitdb WORKING POC VERIFIED
by Skylined · htmldoswindows
https://www.exploit-db.com/exploits/40798

Scores

EPSS 0.6410
EPSS Percentile 98.4%

Details

CWE
CWE-119
Status published
Products (6)
microsoft/jscript 5.6
microsoft/jscript 5.7
microsoft/jscript 5.8
microsoft/vbscript 5.6
microsoft/vbscript 5.7
microsoft/vbscript 5.8
Published Oct 14, 2015
Tracked Since Feb 18, 2026