CVE-2020-1214: High severity internet explorer vulnerability
Published Jun 9, 2020
·Updated
A remote code execution vulnerability exists in the way that the VBScript engine handles objects in memory, aka 'VBScript Remote Code Execution Vulnerability'. This CVE ID is unique from CVE-2020-1213, CVE-2020-1215, CVE-2020-1216, CVE-2020-1230, CVE-2020-1260.
Affected Software
19 affected components
Microsoft Internet Explorer=11
Microsoft Windows 10
Microsoft Windows 10=1607
Microsoft Windows 10=1709
Microsoft Windows 10=1803
Microsoft Windows 10=1809
Microsoft Windows 10=1903
Microsoft Windows 10=1909
Microsoft Windows 10=2004
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012
Microsoft Windows Server 2012=r2
Microsoft Windows Server 2016
Microsoft Windows Server 2019
Microsoft Internet Explorer=9
Microsoft Windows Server 2008=sp2
Remediation
Event History
Jun 9, 2020
CVE Published
via MITRE·07:43 PM
Data Sourced
via MITRE·07:43 PM
DescriptionWeakness
Frequently Asked Questions
1
What is CVE-2020-1214?
CVE-2020-1214 is a remote code execution vulnerability in the VBScript engine.
2
Which software is affected by CVE-2020-1214?
CVE-2020-1214 affects Microsoft Internet Explorer 11.
3
What is the severity of CVE-2020-1214?
The severity of CVE-2020-1214 is high with a CVSS score of 7.5.
4
How does CVE-2020-1214 work?
CVE-2020-1214 allows remote attackers to execute arbitrary code through the VBScript engine by exploiting a memory handling issue.
5
Is Microsoft Windows 10 affected by CVE-2020-1214?
No, Microsoft Windows 10 is not affected by CVE-2020-1214.