A remote code execution vulnerability exists in the way that the MSHTML engine inproperly validates input, aka "MSHTML Engine Remote Code Execution Vulnerability." This affects Microsoft Office, Microsoft Office Word Viewer, Internet Explorer 9, Internet Explorer 11, Microsoft Excel Viewer, Internet Explorer 10, Office 365 ProPlus.
History

Fri, 07 Feb 2025 17:15:00 +0000

Type Values Removed Values Added
Metrics cvssV3_1

{'score': 8.8, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H'}

kev

{'dateAdded': '2021-11-03'}

ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'active', 'Technical Impact': 'total'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: microsoft

Published:

Updated: 2025-02-07T16:28:17.646Z

Reserved: 2018-11-26T00:00:00.000Z

Link: CVE-2019-0541

cve-icon Vulnrichment

Updated: 2024-08-04T17:51:26.356Z

cve-icon NVD

Status : Modified

Published: 2019-01-08T21:29:00.470

Modified: 2025-02-07T17:15:14.647

Link: CVE-2019-0541

cve-icon Redhat

No data.