May 2020:
CVE-2020-1064 Published on May 21, 2020

A remote code execution vulnerability exists in the way that the MSHTML engine improperly validates input.An attacker could execute arbitrary code in the context of the current user, aka 'MSHTML Engine Remote Code Execution Vulnerability'.

NVD


Products Associated with CVE-2020-1064

Want to know whenever a new CVE is published for Microsoft products? stack.watch will email you.

 
 
 

Affected Versions

Microsoft Internet Explorer 9: Microsoft Internet Explorer 11: Microsoft Internet Explorer 11 on Windows 10 Version 1909 for 32-bit Systems: Microsoft Internet Explorer 11 on Windows 10 Version 1909 for x64-based Systems: Microsoft Internet Explorer 11 on Windows 10 Version 1909 for ARM64-based Systems: Microsoft Internet Explorer 11 on Windows 10 Version 1903 for 32-bit Systems: Microsoft Internet Explorer 11 on Windows 10 Version 1903 for x64-based Systems: Microsoft Internet Explorer 11 on Windows 10 Version 1903 for ARM64-based Systems: Microsoft Internet Explorer 11 on Windows Server 2012:

Exploit Probability

EPSS
9.34%
Percentile
92.65%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.