Netskope Threat Labs

BROWSER-IE Microsoft Internet Explorer VBScript Engine remote code execution attempt

IPS-CFWIPS-SWG

3 SIDs: 48368, 48373, 200326

First seen
December 2023
Last seen
October 2026

Detects web content that exploits CVE-2018-8552 and CVE-2018-8544, remote code execution flaws in Internet Explorer's VBScript engine. The rule matches the dictionary object manipulation and class definitions that public exploits use to corrupt memory in the engine.