CVE-2018-8619

Scores

EPSS

0.583medium58.3%
0%20%40%60%80%100%

Percentile: 58.3%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS 2.0
7.6

Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Description

A remote code execution vulnerability exists when the Internet Explorer VBScript execution policy does not properly restrict VBScript under specific conditions, aka “Internet Explorer Remote Code Execution Vulnerability.” This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-269

Related Vulnerabilities

Exploits

Exploit ID: 46023

Source: exploitdb

URL: https://www.exploit-db.com/exploits/46023

Vulnerable Software (81)

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": ...

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4471320

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4470199

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4498206

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4525106

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4511872

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4522007

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.001

Operating System: Windows 1 build 1

Identifier: KB5034120

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.000

Operating System: Windows 1 build 0

Identifier: KB5078738

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB5018413

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.001

Operating System: Windows 1 build 1

Identifier: KB5041770

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4480963

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.001

Operating System: Windows 1 build 1

Identifier: KB5043049

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.001

Operating System: Windows 1 build 1

Identifier: KB5033376

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.1.0.0

Operating System: Windows 0 build 0

Identifier: KB5011486

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4586768

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4507434

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4561603

Source: msrc