The JScript scripting engine 5.1, 5.6, 5.7, and 5.8 in JScript.dll in Microsoft Windows, as used in Internet Explorer, does not properly load decoded scripts into memory before execution, which allows remote attackers to execute arbitrary code via a crafted web site that triggers memory corruption, aka "JScript Remote Code Execution Vulnerability."
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: microsoft
Published: 2009-09-08T22:00:00
Updated: 2024-08-07T05:27:54.805Z
Reserved: 2009-06-04T00:00:00
Link: CVE-2009-1920
Vulnrichment
No data.
NVD
Status : Modified
Published: 2009-09-08T22:30:00.313
Modified: 2024-11-21T01:03:42.613
Link: CVE-2009-1920
Redhat
No data.