CyberRota
Live Feed
Return to register
Case File

CVE-2016-7202

HIGH · CVSS 7.5 EPSS 73.29% Public Exploit

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2016-11-10 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

Exhibit — Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

External Security References

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2016-7202
Severity
HIGH
CVSS
7.5
EPSS
73.29%
Microsoft Java

Original Filing — NVD Description

The scripting engines in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," as demonstrated by the Chakra JavaScript engine, a different vulnerability than CVE-2016-7200, CVE-2016-7201, CVE-2016-7203, CVE-2016-7208, CVE-2016-7240, CVE-2016-7242, and CVE-2016-7243.