CVE-2019-0752
Microsoft Internet Explorer Type Confusion Vulnerability
CVSS
7.5
High
EPSS
81.6%
p100
KEV
YES
Feb 15, 2022
Exploit Today
80
0-100
Published: Apr 9, 2019 · Last modified: Aug 12, 2026 · CWE-843
Product
Microsoft / Internet Explorer
Vulnerability
Microsoft Internet Explorer Type Confusion Vulnerability
Added to KEV
Feb 15, 2022
Remediate by
Aug 15, 2022
Known ransomware use
Yes
Summary description
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer
Required action
Apply updates per vendor instructions.
Notes
https://nvd.nist.gov/vuln/detail/CVE-2019-0752
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0739, CVE-2019-0753, CVE-2019-0862.
- packetstormsecurity.comhttp://packetstormsecurity.com/files/153078/Microsoft-Internet-Explorer-Windows-10-1809-17763.316-Memory-Corruption.html
- portal.msrc.microsoft.comhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0752
- www.zerodayinitiative.comhttps://www.zerodayinitiative.com/advisories/ZDI-19-359/
- packetstormsecurity.comhttp://packetstormsecurity.com/files/153078/Microsoft-Internet-Explorer-Windows-10-1809-17763.316-Memory-Corruption.html
- portal.msrc.microsoft.comhttps://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-0752
- www.zerodayinitiative.comhttps://www.zerodayinitiative.com/advisories/ZDI-19-359/
- www.cisa.govhttps://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-0752