Microsoft Scripting Engine 0-Day Vulnerability Enables Remote Code Execution Over Network

Microsoft has disclosed a critical memory corruption vulnerability in its Scripting Engine (CVE-2025-30397), which allows unauthorized attackers to execute code remotely over a network. The flaw, classified as “Important” and tracked under CWE-843 (Type Confusion), was released as part of the company’s May 2025 Patch Tuesday security updates. The vulnerability arises from the Scripting Engine’s […]

The post Microsoft Scripting Engine 0-Day Vulnerability Enables Remote Code Execution Over Network appeared first on Cyber Security News.

This article has been indexed from Cyber Security News

Read the original article: