CVE-2018-8373CISA KEV
Microsoft Scripting Engine Memory Corruption Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer.
- Product
- Internet Explorer Scripting Engine
- Added to KEV
- 25 Mar 2022
- Federal remediation due
- 15 Apr 2022
- Known ransomware use
- Not reported