vulnerability
Microsoft Windows: CVE-2019-0835: Microsoft Scripting Engine Information Disclosure Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 4 | (AV:N/AC:M/Au:N/C:P/I:N/A:N) | Apr 9, 2019 | Apr 9, 2019 | Sep 10, 2025 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Apr 9, 2019
Added
Apr 9, 2019
Modified
Sep 10, 2025
Description
An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory, aka 'Microsoft Scripting Engine Information Disclosure Vulnerability'.
Solutions
microsoft-windows-windows_10-1507-kb4493475microsoft-windows-windows_10-1607-kb4493470microsoft-windows-windows_10-1703-kb4493474microsoft-windows-windows_10-1709-kb4493441microsoft-windows-windows_10-1803-kb4493464microsoft-windows-windows_10-1809-kb4493509microsoft-windows-windows_server_2016-1607-kb4493470microsoft-windows-windows_server_2019-1809-kb4493509msft-kb4493435-0eb51fde-4958-4852-ac0e-56f11b53146emsft-kb4493435-16555cfa-8763-4700-8b26-ffebde6ee9d0msft-kb4493435-1bd43e18-30f0-406e-9868-ef366a52e3f8msft-kb4493435-23f66904-5d8d-4e14-b06b-48157e4d9327msft-kb4493435-45bd9e14-1175-4ade-9be2-7a5b1030659cmsft-kb4493435-4a2f0647-ecd1-4e6c-9c83-c19f37e7b3e0msft-kb4493435-7720e648-f76d-4dcb-b32d-a46c3aeedcf0msft-kb4493435-8985999b-a13f-48b9-8127-753d0833da52msft-kb4493435-8da98848-d172-48c8-bd1a-7b475fb172a7msft-kb4493435-8ebe980e-6fa3-453f-bee2-f1a255d6fb7bmsft-kb4493435-966e2faa-be12-4488-bbc2-0b89eebb7a59msft-kb4493435-fc5258bc-17ea-4b51-b4d2-17d7e3b5de6e
References
- CVE-2019-0835
- https://attackerkb.com/topics/CVE-2019-0835
- URL-https://support.microsoft.com/help/4493435
- URL-https://support.microsoft.com/help/4493441
- URL-https://support.microsoft.com/help/4493464
- URL-https://support.microsoft.com/help/4493470
- URL-https://support.microsoft.com/help/4493474
- URL-https://support.microsoft.com/help/4493475
- URL-https://support.microsoft.com/help/4493509
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.