Stats
- First seen
- February 2022
- Last seen
- October 2026
Description
Detects web content that exploits CVE-2018-8653, CVE-2019-1367, and CVE-2020-0674, memory corruption flaws in Internet Explorer's legacy JScript engine that can allow code execution. The rule matches the enumeration and garbage collection patterns that public exploits use, and CVE-2019-1367 saw active exploitation in targeted attacks before the fix shipped.