CVE-2019-0768 is a security feature bypass vulnerability in Microsoft Internet Explorer and Windows, allowing VBScript execution under conditions that should be restricted. With a CVSS score of 4.3 (Medium), it can be exploited remotely with low complexity, requiring user interaction, and potentially leading to information disclosure. While not on the KEV catalog, an ExploitDB entry exists for Internet Explorer 11, and its high EPSS score (0.85272) suggests a significant likelihood of exploitation. Community discussion and media coverage are present, indicating awareness of this vulnerability.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11CPE matchmatch criteria | cpe:2.3:a:microsoft:internet_explorer:11:-:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.