Get a Pentest and security assessment of your IT network.

2021-current

CVE-2017-0028 – A remote code execution vulnerability exists when Microsoft scripting eng

A remote code execution vulnerability exists when Microsoft scripting engine improperly accesses objects in memory. The vulnerability could corrupt memory in a way that enables an attacker to execute arbitrary code in the context of the current user. An attacker who successfully exploited the vulnerability could gain the same user rights as the current user, aka “Scripting Engine Memory Corruption Vulnerability.”

 

Source: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-0028

Reference (s):

  • https://github.com/Microsoft/ChakraCore/commit/402f3d967c0a905ec5b9ca9c240783d3f2c15724
Related posts
2021-current

CVE-2004-1715 - Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 all

2021-current

CVE-2014-9236 - Cross-site scripting (XSS) vulnerability in php/edit_photos.php in Zoph (

2021-current

CVE-2020-0829 - A remote code execution vulnerability exists in the way that the ChakraCo

2021-current

CVE-2020-14828 - Vulnerability in the MySQL Server product of Oracle MySQL (component: Ser