February 15, 2022 · Applied Cybernetics Group
CVE-2019-0752 — Microsoft Internet Explorer
known ransomware use
Microsoft Internet Explorer Type Confusion Vulnerability
- Added to KEV
2022-02-15- Federal due date
2022-08-15- Vendor
- Microsoft
- Product
- Internet Explorer
- EPSS
- 99.6th percentile (score 0.816, as of
2026-09-16) - NVD CVSS v3.1
- 7.5 (HIGH)
- Ransomware use
- Known
- Upstream
- https://nvd.nist.gov/vuln/detail/CVE-2019-0752
CISA short description
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer
Required action
Apply updates per vendor instructions.
NVD description
A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2019-0739, CVE-2019-0753, CVE-2019-0862.