CVE detail
CVE-2015-2419
JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "JScript9 Memory Corruption Vulnerability."
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 30.0 · diversity 16.0 · KEV 25.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
21 source links · newest first
- Which vulnerabilities were most exploited by cybercriminals in 2019?Help Net Security
Which ten software vulnerabilities should you patch as soon as possible (if you haven’t already)? Table of top exploited CVEs between 2016 and 2019 (repeats are noted by color) Recorded Future researchers have analyzed code repositories, underground forum postings, dark web sites, closed source reports and data sets comprising of submissions to popular malware repositories to compile a list of the ten most exploited vulnerabilities by cybercriminals in 2019. The list The list is comprised … More →
newswww.helpnetsecurity.comFeb 6, 2020, 6:30 AM A recently discovered exploit kit dubbed Capesand is being involved in live attacks despite the fact that it’s still under development. In October 2019, researchers at TrendMicro discovered a new exploit kit dubbed Capesand that is being involved in live attacks. The tool was discovered while analyzing a malvertising campaign employing the RIG EK to […]
newssecurityaffairs.comNov 8, 2019, 11:01 AMA newly discovered exploit kit (EK) is being employed in live attacks despite the fact that it’s still in an unfinished state, Trend Micro’s security researchers reveal.
newswww.securityweek.comNov 8, 2019, 7:29 AM- RIG exploit kit distributes Princess ransomwareMalwarebytes Labs
We have identified a new drive-by download campaign that distributes the Princess ransomware (AKA PrincessLocker), leveraging compromised websites and the RIG…
newswww.malwarebytes.comAug 30, 2017, 5:00 PM According to a new report published by FireEye, crooks have been using the Neptune exploit kit to deliver cryptocurrency miners via malvertising campaigns. According to experts at FireEye, crooks are exploiting the Neptune exploit kit (aka Terror EK, Eris, and Blaze) to delivery cryptocurrency miners via malvertising campaigns. The Neptune exploit kit was first spotted in January and was […]
newssecurityaffairs.comAug 23, 2017, 8:10 AMA new exploit kit (EK) has emerged recently on underground forums, where a malware developer is advertising it starting at just $80.
newswww.securityweek.comAug 15, 2017, 12:46 PM- The Disdain exploit kit appears in the threat landscapeSecurity Affairs
The Disdain exploit kit is available for rent on a daily, weekly, or monthly basis for prices of $80, $500, and $1,400 respectively. The security researcher David Montenegro discovered a new exploit kit dubbed Disdain that is offered for rent on underground hacking forums by a malware developer using the pseudonym of Cehceny. https://twitter.com/CryptoInsane/status/895151680861253632 The Disdain exploit […]
newssecurityaffairs.comAug 15, 2017, 7:48 AM It’s a new year and while some things change, some things stay the same (or similar). There’s lots of FUD about the sophisticated cyber attacks that are multi-threaded and obfuscated. Certainly there are attacks that fall into this category, but if you look at all of the cybercrime activity from the past year, it’s clear that the majority of threats do not have the level of sophistication that is often talked about.
newswww.securityweek.comJan 20, 2017, 4:16 PM- Sundown Exploit Kit now leverages on the steganographySecurity Affairs
A new variant of the Sundown exploit kit leverages on steganography to hide exploit code in harmless-looking image files. Security experts from Trend Micro have spotted a new version of the Sundown exploit kit that exploits steganography in order to hide malicious code in harmless-looking image files. The use of steganography was recently observed in the malvertising campaigns conducted […]
newssecurityaffairs.comDec 30, 2016, 7:46 PM - Sundown Exploit Kit Starts Using SteganographySecurityWeek
A new version of the Sundown exploit kit uses a technique called steganography to hide its exploits in harmless-looking image files, Trend Micro reported on Thursday.
newswww.securityweek.comDec 30, 2016, 10:31 AM - Exploit kits: Fall 2016 reviewMalwarebytes Labs
There have been interesting developments with exploit kits in the past few months to say the least, with the disappearance of…
newswww.malwarebytes.comNov 8, 2016, 5:00 PM - Sundown Exploit Kit Outsources Coding WorkSecurityWeek
Sundown, a relatively new exploit kit (EK), is outsourcing panel and Domain Generation Algorithm (DGA) coding work and stealing exploits in an attempt to improve its presence on the EK scene.
newswww.securityweek.comSep 5, 2016, 1:46 PM This is the second part of a two-part blog post for understanding Angler exploit kit (EK). The first part covered EKs in general. This blog focuses on the Angler EK. Angler is currently one of the most advanced, effective, and popular exploit kits in the cyber criminal market. It generally uses the most recent exploits
vendorunit42.paloaltonetworks.comJun 7, 2016, 8:00 PM- Flash Flaws Most Common in Exploit Kits: ReportSecurityWeek
Eight of the top ten vulnerabilities used by exploit kits this year affect Adobe Flash Player, a new report from threat intelligence company Recorded Future shows.
newswww.securityweek.comNov 10, 2015, 3:20 PM The notorious Angler exploit kit has started leveraging the Diffie-Hellman cryptographic algorithm to make it more difficult to detect exploits and prevent researchers from analyzing them. Kaspersky Lab has managed to successfully attack the implementation used by cybercriminals.
newswww.securityweek.comSep 8, 2015, 1:54 PMThe developers of the Angler exploit kit have added support for a recently patched Internet Explorer vulnerability.
newswww.securityweek.comAug 11, 2015, 2:18 PM- Angler EK exploits recently patched IE bug to deliver ransomwareHelp Net Security
“If they haven’t already, Internet Explorer users would do well to implement the security update provided by Microsoft last month, as among the fixed vulnerability is one that is currently being exploited via the popular commercial Angler exploit kit. The existence of the vulnerability in question (CVE-2015-2419) has been discovered when the attackers who breached Hacking Team leaked the stolen data. An email in the leaked trove showed that an external researcher attempted to sell … More →
newswww.helpnetsecurity.comAug 11, 2015, 4:00 AM - Recent Internet Explorer Vulnerability Exploited in The WildMalwarebytes Labs
A recently patched Internet Explorer vulnerability (CVE-2015-2419) has already made its way into the top exploit kit on the market, Angler…
newswww.malwarebytes.comAug 10, 2015, 5:00 PM Microsoft has released a total of 14 bulletins as part of the company’s July 2015 security updates. The updates address vulnerabilities in Windows, Office, SQL Server and Internet Explorer, including two zero-day bugs identified by researchers while analyzing the recent Hacking Team leak .
newswww.securityweek.comJul 14, 2015, 6:58 PMFor July 2015, Microsoft released 14 security bulletins, with four patches rated as “critical” remote code execution (RCE) fixes. At least one of the fixes rated “critical” and some rated as “important” are currently being exploited in the wild. Patches rated Critical MS15-065 resolves 28 flaws in Internet Explorer that could otherwise “modify how IE, […]
newswww.csoonline.comJul 14, 2015, 6:22 PMOn Tuesday, as part of their monthly updates, Microsoft released a fix for Internet Explorer that addresses twenty-nine different vulnerabilities. One of them is a previously unknown vulnerability offered up to Hacking Team that researchers discovered in the company’s leaked emails. Hacking Team, an Italian company that sells intrusion and surveillance tools to governments and […]
newswww.csoonline.comJul 14, 2015, 6:06 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2015-2502CVSS 8.8 · High
Microsoft Internet Explorer 7 through 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Memory Cor…
- CVE-2015-2387CVSS 7.8 · High
ATMFD.DLL in the Adobe Type Manager Font Driver in Microsoft Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1,…
- CVE-2013-3918CVSS 8.8 · High
The InformationCardSigninHelper Class ActiveX control in icardie.dll in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2 and R…
- CVE-2015-2423CVSS 4.3 · Medium
Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT Gold and 8.1, Windows 10, Excel…
- CVE-2015-0071CVSS 6.5 · Medium
Microsoft Internet Explorer 9 through 11 allows remote attackers to bypass the ASLR protection mechanism via a crafted web site, aka "Internet Explorer ASLR Bypass Vulnerability."
KEV listed3 mentions - CVE-2014-4123CVSS 8.8 · High
Microsoft Internet Explorer 7 through 11 allows remote attackers to gain privileges via a crafted web site, aka "Internet Explorer Elevation of Privilege Vulnerability," as exploi…
KEV listed