JScript 9 in Microsoft Internet Explorer 10 and 11 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "JScript9 Memory Corruption Vulnerability."
No PoCs from references.
- https://github.com/Advisory-Emulations/APT-37
- https://github.com/ChennaCSP/APT37-Emulation-plan
- https://github.com/Ostorlab/KEV
- https://github.com/Ostorlab/known_exploited_vulnerbilities_detectors
- https://github.com/nao-sec/RigEK