CyberSec.Space Logo
返回 CVE 浏览器

CVE-2009-1920

CRITICAL
9.3
CVSS Severity Score
EPSS Score0.0010%
EPSS Percentile8.54th
Published2009年9月8日
Last Modified2026年4月23日

Vulnerability Description

The JScript scripting engine 5.1, 5.6, 5.7, and 5.8 in JScript.dll in Microsoft Windows, as used in Internet Explorer, does not properly load decoded scripts into memory before execution, which allows remote attackers to execute arbitrary code via a crafted web site that triggers memory corruption, aka "JScript Remote Code Execution Vulnerability."

Affected Platforms (CPE)

💻
Microsoft

Windows 2000

All versions
💻
Microsoft

Windows Server 2003

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Vista

All versions
💻
Microsoft

Windows Xp

All versions
💻
Microsoft

Windows Xp

All versions
💻
Microsoft

Windows Xp

All versions

References & Advisories

相关漏洞威胁