Netskope Threat Labs

BROWSER-IE Microsoft Internet Explorer object property change use after free attempt

IPS-SWG

1 SID: 41405

First seen
February 2022
Last seen
October 2026

Detects web content that exploits CVE-2015-0048, a use-after-free in Internet Explorer triggered by property changes on script objects that can allow code execution. The rule matches the text area data source and markup replacement that public exploits use to free objects while they remain in use.