Netskope Threat Labs

CVE-2015-2419

ATP Sandbox Adv. HeuristicsAV

CVE-2015-2419 is a remote code execution vulnerability in Internet Explorer that lets cyberattackers execute arbitrary code through malicious JavaScript. A crafted page could trigger memory corruption when the browser processed certain objects, which let cyberattackers execute code with the privileges of the user who viewed it. Exploit code circulated in exploit kits shortly after disclosure, and defenders needed to patch quickly because drive by attacks required no user interaction beyond visiting a site.

First seen
January 2022
Last seen
October 2026
Alert Name
GT:JS.CVE-2015-2419.3.09157595
GT:JS.CVE-2015-2419.3.83F80274
GT:JS.CVE-2015-2419.3.F57B44E2
GT:JS.Heur2.CVE-2015-2419.2.3A014F3D
GT:JS.Heur2.CVE-2015-2419.2.47B3E38B
GT:JS.Heur2.CVE-2015-2419.2.559011DA
GT:JS.Heur2.CVE-2015-2419.2.5D251D85
GT:JS.Heur2.CVE-2015-2419.2.64523F5F
GT:JS.Heur2.CVE-2015-2419.2.76F3EAFE
GT:JS.Heur2.CVE-2015-2419.2.7C8779B3