CVE-2025-30397
Access of resource using incompatible type ('type confusion') in Microsoft Scripting Engine allows an unauthorized attacker to execute code over a network.
Vendor
Product
CWE
Yayın Tarihi
2025-05-13 17:16:02
Güncelleme
2025-10-27 17:13:37
Source Identifier
secure@microsoft.com
KEV Date Added
2025-05-13
Kategoriler
Referanslar
https://msrc.microsoft.com/update-guide/vulnerability/CVE-2025-30397
https://www.vicarius.io/vsociety/posts/cve-2025-30397-type-confusion-vulnerability-in-microsoft-scripting-engine-detection-script
https://www.vicarius.io/vsociety/posts/cve-2025-30397-type-confusion-vulnerability-in-microsoft-scripting-engine-mitigation-script
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2025-30397