VYPR
High severity7.5NVD Advisory· Published Jul 15, 2019· Updated Jun 17, 2026

CVE-2019-1001

CVE-2019-1001

Description

A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1004, CVE-2019-1056, CVE-2019-1059.

Affected products

14
  • Microsoft/Internet Explorercpe-rescue2 versions
    Windows 7 for 32-bit Systems Service Pack 1+ 1 more
    • (no CPE)range: Windows 7 for 32-bit Systems Service Pack 1
    • cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:*
  • Microsoft/Chakracorecpe-rescue2 versions
    unspecified+ 1 more
    • (no CPE)range: unspecified
    • cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*range: <1.11.11
  • Microsoft/Edgecpe-rescue2 versions
    Windows 10 for 32-bit Systems+ 1 more
    • (no CPE)range: Windows 10 for 32-bit Systems
    • cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*
  • Microsoft/Internet Explorer 11 on Windows Server 2012v5
    Range: unspecified
  • Microsoft/Internet Explorer 11 on Windows 10 Version 1903 for 32-bit Systemsv5
    Range: unspecified
  • Microsoft/Internet Explorer 11 on Windows 10 Version 1903 for x64-based Systemsv5
    Range: unspecified
  • Microsoft/Internet Explorer 11 on Windows 10 Version 1903 for ARM64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge on Windows 10 Version 1903 for 32-bit Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge on Windows 10 Version 1903 for x64-based Systemsv5
    Range: unspecified
  • Microsoft/Microsoft Edge on Windows 10 Version 1903 for ARM64-based Systemsv5
    Range: unspecified

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.