Netskope Threat Labs

BROWSER-IE Microsoft Windows Scripting Engine use-after-free attempt

IPS-SWG

1 SID: 60834

First seen
July 2024
Last seen
July 2024

Detects web content that exploits CVE-2022-41118, a use-after-free in Microsoft's scripting engine that can allow code execution. The rule matches the repeated array pushes that public exploits use to free and reuse array backing memory during resizing.