← Back

CVE-2016-3202

nvd nist
Published: Jun 16, 2016Modified: May 6, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Exploitability: 1.6 / Impact: 5.9
Source: NVD

Description

The Microsoft (1) Chakra JavaScript, (2) JScript, and (3) VBScript engines, as used in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability."

Affected (3)

3 products
Chakra Javascript
Jscript
Vbscript
Configuration A
3 vulnerable · 3 platform
Vulnerable SoftwareAffected Versions
All versions
All versions
All versions
Running on/withPlatform Versions
Microsoft
Edge
All versions
Microsoft
Internet Explorer
Version 10
Microsoft
Internet Explorer
Version 11

Timeline

No history available yet.