CVE-2018-8552
HIGHInternet Explorer <11 - Info Disclosure
Title source: llmDescription
An information disclosure vulnerability exists when VBScript improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user's computer or data, aka "Windows Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · htmldoswindows
https://www.exploit-db.com/exploits/45924
Scores
CVSS v3
7.5
EPSS
0.5627
EPSS Percentile
98.1%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CWE
CWE-119
Status
published
Products (3)
microsoft/internet_explorer
11
microsoft/internet_explorer
10
microsoft/internet_explorer
9
Published
Nov 14, 2018
Tracked Since
Feb 18, 2026