Microsoft Scripting Engine是美国微软(Microsoft)公司的一种工具,为JScript和VBScript提供脚本引擎。 Microsoft Scripting Engine存在安全漏洞。攻击者利用该漏洞可以远程执行代码。以下产品和版本受到影响:Windows 10 Version 21H2 for 32-bit Systems,Windows 10 Version 21H2 for ARM64-based Systems,Windows 10 Version 21H2 for
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | Remote Code Execution via Use-After-Free in JScript.dll (CVE-2025-30397) | https://github.com/mbanyamer/CVE-2025-30397---Windows-Server-2025-JScript-RCE-Use-After-Free- | POC Details |
| 2 | CVE-2025-30397 | https://github.com/B1ack4sh/Blackash-CVE-2025-30397 | POC Details |
| 3 | CVE-2025-30397 | https://github.com/Ashwesker/Blackash-CVE-2025-30397 | POC Details |
| 4 | CVE-2025-30397 | https://github.com/Ashwesker/Ashwesker-CVE-2025-30397 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2025-30387 | 9.8 CRITICAL | Document Intelligence Studio On-Prem Elevation of Privilege Vulnerability |
| CVE-2025-29840 | 8.8 HIGH | Windows Media Remote Code Execution Vulnerability |
| CVE-2025-29964 | 8.8 HIGH | Windows Media Remote Code Execution Vulnerability |
| CVE-2025-29966 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2025-29967 | 8.8 HIGH | Remote Desktop Client Remote Code Execution Vulnerability |
| CVE-2025-29963 | 8.8 HIGH | Windows Media Remote Code Execution Vulnerability |
| CVE-2025-29962 | 8.8 HIGH | Windows Media Remote Code Execution Vulnerability |
| CVE-2025-32704 | 8.4 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-30377 | 8.4 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-30386 | 8.4 HIGH | Microsoft Office Remote Code Execution Vulnerability |
| CVE-2025-26646 | 8.0 HIGH | .NET, Visual Studio, and Build Tools for Visual Studio Spoofing Vulnerability |
| CVE-2025-32701 | 7.8 HIGH | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2025-30393 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-30400 | 7.8 HIGH | Microsoft DWM Core Library Elevation of Privilege Vulnerability |
| CVE-2025-32706 | 7.8 HIGH | Windows Common Log File System Driver Elevation of Privilege Vulnerability |
| CVE-2025-30383 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-24063 | 7.8 HIGH | Kernel Streaming Service Driver Elevation of Privilege Vulnerability |
| CVE-2025-30381 | 7.8 HIGH | Microsoft Excel Remote Code Execution Vulnerability |
| CVE-2025-32709 | 7.8 HIGH | Windows Ancillary Function Driver for WinSock Elevation of Privilege Vulnerability |
| CVE-2025-29975 | 7.8 HIGH | Microsoft PC Manager Elevation of Privilege Vulnerability |
Showing top 20 of 71 CVEs. View all on vendor page → →
No comments yet