CVE-2015-2372

Description

vbscript.dll in Microsoft VBScript 5.6 through 5.8, as used with Internet Explorer 6 through 11 and other products, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka VBScript Memory Corruption Vulnerability.

Risk Information

Base Score
6.8
MODERATE
Vector
AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:N
EPSS Score
Exploitation Probability
16.31

Associated Vulnerability

VulnerabilityOS Platform
Cumulative Security Update for Internet Explorer 6 for Windows Server 2003 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 6 for Windows Server 2003 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Vista (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2008 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Vista for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 7 for Windows Server 2008 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Vista (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows 7 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Vista for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 R2 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows Vista (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows 7 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows Vista for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows 7 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 R2 x64 Edition (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows 7 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows 8 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows 7 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows Server 2008 R2 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows 8 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 10 for Windows Server 2012 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows 7 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows 8.1 (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based Systems (KB3065822)Windows
Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 (KB3065822)Windows
Security Update for Windows Server 2003 (KB3068404)Windows
Security Update for Windows Server 2003 x64 Edition (KB3068404)Windows
Security Update for Windows Server 2003 (KB3068368)Windows
Security Update for Windows Vista (KB3068368)Windows
Security Update for Windows Server 2008 (KB3068368)Windows
Security Update for Windows Server 2003 x64 Edition (KB3068368)Windows
Security Update for Windows Vista for x64-based Systems (KB3068368)Windows
Security Update for Windows Server 2008 x64 Edition (KB3068368)Windows
Security Update for Windows Server 2008 R2 x64 Edition (KB3068364)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-18002Cumulative Security Update for Internet Explorer 6 for Windows Server 2003 (KB3065822)
PATCH-18003Cumulative Security Update for Internet Explorer 6 for Windows Server 2003 x64 Edition (KB3065822)
PATCH-18004Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 (KB3065822)
PATCH-18005Cumulative Security Update for Internet Explorer 7 for Windows Vista (KB3065822)
PATCH-18006Cumulative Security Update for Internet Explorer 7 for Windows Server 2008 (KB3065822)
PATCH-18007Cumulative Security Update for Internet Explorer 7 for Windows Server 2003 x64 Edition (KB3065822)
PATCH-18008Cumulative Security Update for Internet Explorer 7 for Windows Vista for x64-based Systems (KB3065822)
PATCH-18009Cumulative Security Update for Internet Explorer 7 for Windows Server 2008 x64 Edition (KB3065822)
PATCH-18010Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 (KB3065822)
PATCH-18011Cumulative Security Update for Internet Explorer 8 for Windows Vista (KB3065822)
PATCH-18012Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 (KB3065822)
PATCH-18013Cumulative Security Update for Internet Explorer 8 for Windows 7 (KB3065822)
PATCH-18014Cumulative Security Update for Internet Explorer 8 for Windows Server 2003 x64 Edition (KB3065822)
PATCH-18015Cumulative Security Update for Internet Explorer 8 for Windows Vista for x64-based Systems (KB3065822)
PATCH-18016Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 x64 Edition (KB3065822)
PATCH-18017Cumulative Security Update for Internet Explorer 8 for Windows 7 for x64-based Systems (KB3065822)
PATCH-18018Cumulative Security Update for Internet Explorer 8 for Windows Server 2008 R2 x64 Edition (KB3065822)
PATCH-18019Cumulative Security Update for Internet Explorer 9 for Windows Vista (KB3065822)
PATCH-18021Cumulative Security Update for Internet Explorer 9 for Windows 7 (KB3065822)
PATCH-18022Cumulative Security Update for Internet Explorer 9 for Windows Vista for x64-based Systems (KB3065822)
PATCH-18023Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 x64 Edition (KB3065822)
PATCH-18024Cumulative Security Update for Internet Explorer 9 for Windows 7 for x64-based Systems (KB3065822)
PATCH-18025Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 R2 x64 Edition (KB3065822)
PATCH-18026Cumulative Security Update for Internet Explorer 10 for Windows 7 (KB3065822)
PATCH-18027Cumulative Security Update for Internet Explorer 10 for Windows 8 (KB3065822)
PATCH-18028Cumulative Security Update for Internet Explorer 10 for Windows 7 for x64-based Systems (KB3065822)
PATCH-18029Cumulative Security Update for Internet Explorer 10 for Windows Server 2008 R2 for x64-based Systems (KB3065822)
PATCH-18030Cumulative Security Update for Internet Explorer 10 for Windows 8 for x64-based Systems (KB3065822)
PATCH-18031Cumulative Security Update for Internet Explorer 10 for Windows Server 2012 (KB3065822)
PATCH-18034Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based Systems (KB3065822)
PATCH-18035Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based Systems (KB3065822)
PATCH-18036Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based Systems (KB3065822)
PATCH-18037Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 (KB3065822)
PATCH-18043Security Update for Windows Server 2003 (KB3068404)
PATCH-18044Security Update for Windows Server 2003 x64 Edition (KB3068404)
PATCH-18045Security Update for Windows Server 2003 (KB3068368)
PATCH-18046Security Update for Windows Vista (KB3068368)
PATCH-18047Security Update for Windows Server 2008 (KB3068368)
PATCH-18048Security Update for Windows Server 2003 x64 Edition (KB3068368)
PATCH-18049Security Update for Windows Vista for x64-based Systems (KB3068368)
PATCH-18050Security Update for Windows Server 2008 x64 Edition (KB3068368)
PATCH-18051Security Update for Windows Server 2008 R2 x64 Edition (KB3068364)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234