CVE-2019-1485: High severity internet explorer vulnerability
Published Dec 10, 2019
·Updated
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'.
Affected Software
19 affected components
Microsoft Internet Explorer=9
Microsoft Windows Server 2008=sp2
Microsoft Internet Explorer=10
Microsoft Windows Server 2012
Microsoft Internet Explorer=11
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Remediation
Event History
Dec 10, 2019
CVE Published
via MITRE·09:41 PM
Data Sourced
via MITRE·09:41 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2019-1485?
CVE-2019-1485 is a remote code execution vulnerability in the VBScript engine of Microsoft Internet Explorer.
2
What is the severity of CVE-2019-1485?
CVE-2019-1485 has a severity rating of 7.5 out of 10, which is classified as high.
3
How does CVE-2019-1485 impact Microsoft Internet Explorer?
CVE-2019-1485 allows remote attackers to execute arbitrary code on a vulnerable system through a maliciously crafted webpage.
4
Which versions of Microsoft Internet Explorer are affected by CVE-2019-1485?
CVE-2019-1485 affects Microsoft Internet Explorer version 9, 10, and 11.
5
How can I fix CVE-2019-1485?
To fix CVE-2019-1485, Microsoft has released a security update. It is recommended to install the latest update from Microsoft to protect against this vulnerability.