CVE-2015-2502
HIGH KEVMicrosoft Internet Explorer - Out-of-Bounds Write
Title source: ruleDescription
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Corruption Vulnerability," as exploited in the wild in August 2015.
References (7)
Scores
CVSS v3
8.8
EPSS
0.2174
EPSS Percentile
95.8%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CISA KEV
2022-04-13
VulnCheck KEV
2015-08-18
InTheWild.io
2015-08-18
ENISA EUVD
EUVD-2015-2595
CWE
CWE-787
Status
published
Products (5)
microsoft/internet_explorer
7
microsoft/internet_explorer
8
microsoft/internet_explorer
9
microsoft/internet_explorer
10
microsoft/internet_explorer
11
Published
Aug 19, 2015
KEV Added
Apr 13, 2022
Tracked Since
Feb 18, 2026