CVE-2019-1428: High severity microsoft edge beta vulnerability
Published Nov 12, 2019
·Updated
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Microsoft Edge (HTML-based), aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1426, CVE-2019-1427, CVE-2019-1429.
Affected Software
9 affected components
Microsoft Edge
Microsoft Windows 10=1607
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft ChakraCore<1.11.15
Remediation
Event History
Nov 12, 2019
CVE Published
via MITRE·06:53 PM
Data Sourced
via MITRE·06:53 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-1428?
CVE-2019-1428 is a remote code execution vulnerability in Microsoft Edge's scripting engine.
2
What is the severity of CVE-2019-1428?
The severity of CVE-2019-1428 is high, with a CVSS score of 7.5.
3
What software is affected by CVE-2019-1428?
Microsoft Edge and Microsoft ChakraCore are affected by CVE-2019-1428.
4
How can I fix CVE-2019-1428?
Apply the security update provided by Microsoft to fix CVE-2019-1428.
5
Where can I find more information about CVE-2019-1428?
You can find more information about CVE-2019-1428 on the Microsoft Security Guidance Advisory page.