CVE-2019-1056
Last modified
CVE-2019-1056 is a vulnerability of currently unknown severity. A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1001, CVE-2019-1004, CVE-2019-1059.. EPSS estimates a 7.79% chance of exploitation in the next 30 days.
Description
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-1001, CVE-2019-1004, CVE-2019-1059.
Metrics
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Microsoft | Internet Explorer | 11 |
References
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1056Patch, Vendor Advisory
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2019-1056Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2019-1056?
How severe is CVE-2019-1056?
How do I fix CVE-2019-1056?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2019
- CVE-2019-10554Multiple Read overflows issue due to improper length check w…9.1
- CVE-2019-10555Buffer overflow can occur due to usage of wrong datatype and…7.8
- CVE-2019-10556Missing length check before copying the data from kernel spa…7.8
- CVE-2019-10557Out-of-bound read in the wireless driver in the Linux kernel…9.8
- CVE-2019-10558While transferring data from APPS to DSP, Out of bound in Fa…7.8
- CVE-2019-10559Accessing data buffer beyond the available data while parsin…9.8
- CVE-2019-10560Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID…
- CVE-2019-10561Improper initialization of local variables which are paramet…5.5
- CVE-2019-10562u'Improper authentication and signature verification of debu…7.8
- CVE-2019-10563Buffer over-read can occur in fast message handler due to im…7.8
- CVE-2019-10564Possible OOB issue in EEPROM due to lack of check while acce…7.8
- CVE-2019-10565Double free issue can happen when sensor power settings is f…9.8
Are you affected by CVE-2019-1056?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
