CVE-2016-0002: Buffer Overflow
The Microsoft (1) VBScript 5.7 and 5.8 and (2) JScript 5.7 and 5.8 engines, as used in Internet Explorer 8 through 11 and other products, allow remote attackers to execute arbitrary code via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2016-0002?
CVE-2016-0002 is classified as critical due to its potential to allow remote code execution.
How do I fix CVE-2016-0002?
To fix CVE-2016-0002, install the security updates provided by Microsoft as detailed in their bulletin.
Which versions of software are affected by CVE-2016-0002?
CVE-2016-0002 affects Microsoft VBScript versions 5.7 and 5.8, and JScript versions 5.7 and 5.8, as well as Internet Explorer versions 8 to 11.
Can CVE-2016-0002 be exploited without user interaction?
Yes, CVE-2016-0002 can be exploited by tricking users into visiting a malicious website.
What are the consequences of CVE-2016-0002 exploitation?
Exploitation of CVE-2016-0002 can lead to unauthorized control of a system through remote code execution.