Netskope Threat Labs

BROWSER-IE Microsoft Edge App-v vbs command attempt

IPS-CFWIPS-SWG

1 SID: 48053

First seen
January 2022
Last seen
October 2026

Detects web content that exploits CVE-2018-8495, a flaw in Microsoft Edge's handling of the App-V publishing server script that can allow command execution. A crafted link points at SyncAppvPublishingServer.vbs with operator-supplied arguments, and code runs when the user follows the link.