CVE-2019-1429
HIGH KEVMicrosoft Internet Explorer - Out-of-Bounds Write
Title source: ruleDescription
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1426, CVE-2019-1427, CVE-2019-1428.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · textdoswindows
https://www.exploit-db.com/exploits/47707
References (3)
Scores
CVSS v3
7.5
EPSS
0.8304
EPSS Percentile
99.3%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Details
CISA KEV
2021-11-03
VulnCheck KEV
2019-11-12
InTheWild.io
2019-11-12
ENISA EUVD
EUVD-2019-9986
CWE
CWE-416
CWE-787
Status
published
Products (3)
microsoft/internet_explorer
9
microsoft/internet_explorer
10
microsoft/internet_explorer
11
Published
Nov 12, 2019
KEV Added
Nov 03, 2021
Tracked Since
Feb 18, 2026