← Back to browse · API

CVE-2009-0554

Severity
HIGH
CVSS
8.8
EPSS
0.32169
Risk score
46.46
CISA KEV
No
PoC
No
Published
2009-04-15
Modified
2025-01-21
First seen
2026-08-07
Aliases
EUVD-2009-0558, GHSA-R9XQ-FPXC-46XW
Products
n/a:n/a n/a
Sources
euvd EUVD-2009-0558

Description

Microsoft Internet Explorer 5.01 SP4, 6 SP1, 6 and 7 on Windows XP SP2 and SP3, 6 and 7 on Windows Server 2003 SP1 and SP2, 7 on Windows Vista Gold and SP1, and 7 on Windows Server 2008 allows remote attackers to execute arbitrary code via a web page that triggers presence of an object in memory that was (1) not properly initialized or (2) deleted, aka "Uninitialized Memory Corruption Vulnerability."

References