Security researcher Dmitri Kaslov discovered a vulnerability in the JScript component of the Windows operating system that can be exploited by an attacker to execute malicious code on a target computer. The vulnerability received a 6.8 rating out of 10 on the CVSSv2 severity scale. To exploit the vulnerability, the attacker has to trick victims into accessing a malicious web page or download and open a malicious JS file on the system. Microsoft has yet to roll out a patch to address the flaw so ZDI published a part of the technical analysis of the vulnerability.”]
Source: https://securityaffairs.co/wordpress/73076/hacking/jscript-component-0day.html

