header-logo
Suggest Exploit
vendor:
Internet Explorer
by:
deadlock (Forrest Orr)

Microsoft Internet Explorer 8/11 and WPAD service ‘Jscript.dll’ – Use-After-Free

This exploit is a JavaScript file containing CVE-2020-0674 UAF targetting IE8/11 and WPAD 64-bit on Windows 7 and 8.1 x64. It may be used as an alternative RCE attack vector in tandem with the firefox.exe exploit.

Mitigation:

Disable JavaScript in the browser, use a firewall to block malicious requests, and use a secure web browser.
Source

Exploit-DB raw data: