21 December 18, 11:22
Quote:Microsoft released a security update for Internet Explorer on December 19, 2018 that patches a security issue in the scripting engine.Full reading: https://www.ghacks.net/2018/12/19/intern...-released/
Microsoft describes the issue in the following way:
Quote:A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer.
The issue is filed under CVE-2018-8653. The Security Advisory page for CVE-2018-8653 offers additional details. The vulnerability could be used by attackers to execute arbitrary code in the user context if exploited successfully.
If a user has administrative rights, the attacker would get these rights as well; this would allow the attacker to install and run software, and modify system settings among other things.