CVE-2015-1684

Severity
4.3MEDIUM
EPSS
13.1%
top 5.89%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedMay 13
Latest updateMay 14

Description

VBScript.dll in the Microsoft VBScript 5.6 through 5.8 engine, as used in Internet Explorer 8 through 11 and other products, allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "VBScript ASLR Bypass."

CVSS vector

AV:N/AC:M/C:P/I:N/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages2 packages

NVDmicrosoft/vbscript5.6, 5.7, 5.8+2
NVDmicrosoft/internet_explorer4 versions+3

🔴Vulnerability Details

2
GHSA
GHSA-6f6v-92j9-79pg: VBScript2022-05-14
CVEList
CVE-2015-1684: VBScript2015-05-13
CVE-2015-1684 (MEDIUM CVSS 4.3) | VBScript.dll in the Microsoft VBScr | cvebase.io