CVE-2019-1485

Description

A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka VBScript Remote Code Execution Vulnerability.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
4.581

Associated Vulnerability

VulnerabilityOS Platform
Win32k Graphics Remote Code Execution Vulnerability for Windows 8.1 for x64-based Systems (KB4530702)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 8.1 for x86-based Systems (KB4530702)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2012 R2 for x64-based Systems (KB4530702)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1809 for x86-based Systems (KB4530715)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1809 for x64-based Systems (KB4530715)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2019 for x64-based Systems (KB4530715)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1607 for x64-based Systems (KB4530689)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1607 for x86-based Systems (KB4530689)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2016 for x64-based Systems (KB4530689)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4530714)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4530714)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server, version 1903 for x64-based Systems (KB4530684)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1903 for x86-based Systems (KB4530684)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1903 for x64-based Systems (KB4530684)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1909 for x64-based Systems (KB4530684)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1909 for x86-based Systems (KB4530684)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2012 for x64-based Systems (KB4530691)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2008 R2 for x64-based Systems (KB4530734)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 7 for x86-based Systems (KB4530734)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 7 for x64-based Systems (KB4530734)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2008 for x86-based Systems (KB4530695)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2008 for x64-based Systems (KB4530695)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server 2016 (1803) for x64-based Systems (KB4530717)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1803 for x86-based Systems (KB4530717)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1803 for x64-based Systems (KB4530717)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 9 for Windows Server 2008 for x86-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 9 for Windows Server 2008 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows 7 for x86-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows Server 2008 R2 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows 7 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows Server 2012 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows 8.1 for x86-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 10 for Windows Server 2012 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows Server 2012 R2 for x64-based systems (KB4530677)Windows
VBScript Remote Code Execution Vulnerability for Internet Explorer 11 for Windows 8.1 for x64-based systems (KB4530677)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1507 for x64-based Systems (KB4530681)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows 10 Version 1507 for x86-based Systems (KB4530681)Windows
Win32k Graphics Remote Code Execution Vulnerability for Windows Server, version 1909 for x64-based Systems (KB4530684)Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-279802019-12 Security Monthly Quality Rollup for Windows 8.1 for x64-based Systems (KB4530702)
PATCH-279812019-12 Security Monthly Quality Rollup for Windows 8.1 for x86-based Systems (KB4530702)
PATCH-279822019-12 Security Monthly Quality Rollup for Windows Server 2012 R2 for x64-based Systems (KB4530702)
PATCH-280282019-12 Cumulative Update for Windows 10 Version 1809 for x86-based Systems (KB4530715)
PATCH-280292019-12 Cumulative Update for Windows 10 Version 1809 for x64-based Systems (KB4530715)
PATCH-280302019-12 Cumulative Update for Windows Server 2019 for x64-based Systems (KB4530715)
PATCH-280182019-12 Cumulative Update for Windows 10 Version 1607 for x64-based Systems (KB4530689)
PATCH-280192019-12 Cumulative Update for Windows 10 Version 1607 for x86-based Systems (KB4530689)
PATCH-280202019-12 Cumulative Update for Windows Server 2016 for x64-based Systems (KB4530689)
PATCH-280232019-12 Cumulative Update for Windows 10 Version 1709 for x64-based Systems (KB4530714)
PATCH-280242019-12 Cumulative Update for Windows 10 Version 1709 for x86-based Systems (KB4530714)
PATCH-280312019-12 Cumulative Update for Windows Server, version 1903 for x64-based Systems (KB4530684)
PATCH-280322019-12 Cumulative Update for Windows 10 Version 1903 for x86-based Systems (KB4530684)
PATCH-280332019-12 Cumulative Update for Windows 10 Version 1903 for x64-based Systems (KB4530684)
PATCH-280342019-12 Cumulative Update for Windows 10 Version 1909 for x64-based Systems (KB4530684)
PATCH-280352019-12 Cumulative Update for Windows 10 Version 1909 for x86-based Systems (KB4530684)
PATCH-279852019-12 Security Monthly Quality Rollup for Windows Server 2012 for x64-based Systems (KB4530691)
PATCH-279772019-12 Security Monthly Quality Rollup for Windows Server 2008 R2 for x64-based Systems (KB4530734)
PATCH-279782019-12 Security Monthly Quality Rollup for Windows 7 for x86-based Systems (KB4530734)
PATCH-279792019-12 Security Monthly Quality Rollup for Windows 7 for x64-based Systems (KB4530734)
PATCH-279832019-12 Security Monthly Quality Rollup for Windows Server 2008 for x86-based Systems (KB4530695)
PATCH-279842019-12 Security Monthly Quality Rollup for Windows Server 2008 for x64-based Systems (KB4530695)
PATCH-280252019-12 Cumulative Update for Windows Server 2016 (1803) for x64-based Systems (KB4530717)
PATCH-280262019-12 Cumulative Update for Windows 10 Version 1803 for x86-based Systems (KB4530717)
PATCH-280272019-12 Cumulative Update for Windows 10 Version 1803 for x64-based Systems (KB4530717)
PATCH-279882019-12 Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 for x86-based systems (KB4530677)
PATCH-279892019-12 Cumulative Security Update for Internet Explorer 9 for Windows Server 2008 for x64-based systems (KB4530677)
PATCH-279902019-12 Cumulative Security Update for Internet Explorer 11 for Windows 7 for x86-based systems (KB4530677)
PATCH-279912019-12 Cumulative Security Update for Internet Explorer 11 for Windows Server 2008 R2 for x64-based systems (KB4530677)
PATCH-279922019-12 Cumulative Security Update for Internet Explorer 11 for Windows 7 for x64-based systems (KB4530677)
PATCH-279932019-12 Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 for x64-based systems (KB4530677)
PATCH-279942019-12 Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x86-based systems (KB4530677)
PATCH-279952019-12 Cumulative Security Update for Internet Explorer 10 for Windows Server 2012 for x64-based systems (KB4530677)
PATCH-279962019-12 Cumulative Security Update for Internet Explorer 11 for Windows Server 2012 R2 for x64-based systems (KB4530677)
PATCH-279972019-12 Cumulative Security Update for Internet Explorer 11 for Windows 8.1 for x64-based systems (KB4530677)
PATCH-280162019-12 Cumulative Update for Windows 10 Version 1507 for x64-based Systems (KB4530681)
PATCH-280172019-12 Cumulative Update for Windows 10 Version 1507 for x86-based Systems (KB4530681)
PATCH-280562019-12 Cumulative Update for Windows Server, version 1909 for x64-based Systems (KB4530684)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234