CVE-2019-0772 — Out-of-bounds Write in Microsoft Windows
Severity
8.8HIGHNVD
NVD7.5VulnCheck7.5
EPSS
14.7%
top 5.50%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedApr 9
Latest updateMay 13
Description
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2019-0665, CVE-2019-0666, CVE-2019-0667.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:HExploitability: 2.8 | Impact: 5.9
Affected Packages21 packages
Patches
🔴Vulnerability Details
6GHSA▶
GHSA-wxq6-gr33-gq85: A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code E↗2022-05-13
GHSA▶
GHSA-8gf9-x2m9-vchj: A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code E↗2022-05-13
GHSA▶
GHSA-979f-qh32-f5vr: A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code E↗2022-05-13
GHSA▶
GHSA-6pcj-mwpq-gv78: A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'Windows VBScript Engine Remote Code E↗2022-05-13