CyberSec.Space Logo
Back to CVE Browser

CVE-2019-0541

Known Exploited (CISA KEV)HIGH
8.8
CVSS Severity Score
EPSS Score96.6530%
EPSS Percentile88.99th
PublishedJan 8, 2019
Last ModifiedOct 29, 2025

Vulnerability Description

A remote code execution vulnerability exists in the way that the MSHTML engine inproperly validates input, aka "MSHTML Engine Remote Code Execution Vulnerability." This affects Microsoft Office, Microsoft Office Word Viewer, Internet Explorer 9, Internet Explorer 11, Microsoft Excel Viewer, Internet Explorer 10, Office 365 ProPlus.

Affected Platforms (CPE)

πŸ“¦
Microsoft

Internet Explorer

= 11
πŸ“¦
Microsoft

Excel Viewer

= 2007
πŸ“¦
Microsoft

Office

= 2010
πŸ“¦
Microsoft

Office

= 2013
πŸ“¦
Microsoft

Office

= 2013
πŸ“¦
Microsoft

Office

= 2016
πŸ“¦
Microsoft

Office

= 2019
πŸ“¦
Microsoft

Office 365 Proplus

All versions
πŸ“¦
Microsoft

Office Word Viewer

All versions
πŸ“¦
Microsoft

Internet Explorer

= 9
πŸ“¦
Microsoft

Internet Explorer

= 10

References & Advisories

Related Vulnerabilities