VYPR
High severity7.5CISA KEVNVD Advisory· Published May 11, 2016· Updated Jun 17, 2026

CVE-2016-0189

CVE-2016-0189

Description

The Microsoft (1) JScript 5.8 and (2) VBScript 5.7 and 5.8 engines, as used in Internet Explorer 9 through 11 and other products, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-0187.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

9
  • cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*+ 3 more
    • cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*
    • (no CPE)range: 9 - 11
  • Microsoft/Jscript2 versions
    cpe:2.3:a:microsoft:jscript:5.8:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:microsoft:jscript:5.8:*:*:*:*:*:*:*
    • (no CPE)range: 5.8
  • cpe:2.3:a:microsoft:vbscript:5.7:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:microsoft:vbscript:5.7:*:*:*:*:*:*:*
    • cpe:2.3:a:microsoft:vbscript:5.8:*:*:*:*:*:*:*
    • (no CPE)range: 5.7 - 5.8

Patches

Vulnerability mechanics

References

7

News mentions

0

No linked articles in our index yet.