Lucene search

K
cveMicrosoftCVE-2015-6055
HistoryOct 14, 2015 - 1:59 a.m.

CVE-2015-6055

2015-10-1401:59:25
CWE-119
microsoft
web.nvd.nist.gov
34
microsoft
vbscript
jscript
internet explorer
memory corruption
cve-2015-6055

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.64

Percentile

97.9%

The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted Filter arguments, aka “Scripting Engine Memory Corruption Vulnerability.”

Affected configurations

Nvd
Node
microsoftjscriptMatch5.6
OR
microsoftjscriptMatch5.7
OR
microsoftjscriptMatch5.8
OR
microsoftvbscriptMatch5.6
OR
microsoftvbscriptMatch5.7
OR
microsoftvbscriptMatch5.8
AND
microsoftinternet_explorerMatch8
OR
microsoftinternet_explorerMatch9
OR
microsoftinternet_explorerMatch10
OR
microsoftinternet_explorerMatch11-
VendorProductVersionCPE
microsoftjscript5.6cpe:2.3:a:microsoft:jscript:5.6:*:*:*:*:*:*:*
microsoftjscript5.7cpe:2.3:a:microsoft:jscript:5.7:*:*:*:*:*:*:*
microsoftjscript5.8cpe:2.3:a:microsoft:jscript:5.8:*:*:*:*:*:*:*
microsoftvbscript5.6cpe:2.3:a:microsoft:vbscript:5.6:*:*:*:*:*:*:*
microsoftvbscript5.7cpe:2.3:a:microsoft:vbscript:5.7:*:*:*:*:*:*:*
microsoftvbscript5.8cpe:2.3:a:microsoft:vbscript:5.8:*:*:*:*:*:*:*
microsoftinternet_explorer8cpe:2.3:a:microsoft:internet_explorer:8:*:*:*:*:*:*:*
microsoftinternet_explorer9cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*
microsoftinternet_explorer10cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*
microsoftinternet_explorer11cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

AI Score

8.1

Confidence

High

EPSS

0.64

Percentile

97.9%