Microsoft Windows Scripting Memory Reallocation Vulnerability
Last Update Date:
13 Apr 2011 16:53
Release Date:
13 Apr 2011
5983
Views
RISK: High Risk
TYPE: Operating Systems - Windows OS
A remote code execution vulnerability exists in the JScript and VBScript scripting engines due to a memory corruption error. An attacker who successfully exploited this vulnerability could run arbitrary code in the context of the logged-on user. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.
Impact
- Remote Code Execution
System / Technologies affected
- JScript 5.6 and VBScript 5.6
- JScript 5.7 and VBScript 5.7
- JScript 5.8 and VBScript 5.8
- Windows XP
- Windows Server 2003
- Windows Vista
- Windows Server 2008
- Windows 7
- Windows Server 2008 R2
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
http://www.microsoft.com/technet/security/bulletin/MS11-031.mspx#ERC
Vulnerability Identifier
Source
Related Link
Share with