Microsoft Windows Scripting Engines Information Disclosure Vulnerability( 09 February 2011 )
RISK: Medium Risk
TYPE: Operating Systems - Windows OS
An information disclosure vulnerability exists in the JScript and VBScript scripting engines due to a memory corruption error. An attacker who successfully exploited this vulnerability could read data not intended to be disclosed. Note that this vulnerability would not allow an attacker to execute code or to elevate their user rights directly, but it could be used to obtain information that could be used to try to further compromise the affected system.
Impact
- Information Disclosure
System / Technologies affected
- JScript 5.8
- VBScript 5.8
- Windows 7
- Windows Server 2008
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
Download locations for this patch
- Windows 7 for 32-bit Systems
- JScript 5.8
- VBScript 5.8 - Windows 7 for x64-based Systems
- JScript 5.8
- VBScript 5.8 - Windows Server 2008 R2 for x64-based Systems
- JScript 5.8
- VBScript 5.8 - Windows Server 2008 R2 for Itanium-based Systems
- JScript 5.8
- VBScript 5.8
Vulnerability Identifier
Source
Related Link
Share with