This security update resolves a vulnerability in the JScript and VBScript scripting engines in Microsoft Windows. The vulnerability could allow remote code execution if a user visits a specially crafted website. An attacker who successfully exploited the vulnerability could gain the same user rights as the current user. If the current user is logged on by using administrative user rights, an attacker who successfully exploited the vulnerabilities could take control of an affected system. An attacker could then install programs; view, change, or delete data; or create new accounts that have full user rights.
To learn more about the vulnerability, see Microsoft Security Bulletin MS16-086.
To learn more about the vulnerability, see Microsoft Security Bulletin MS16-086.