CVE-2018-0891

Scores

EPSS

0.566medium56.6%
0%20%40%60%80%100%

Percentile: 56.6%

CVSS

4.3medium3.x
0246810

CVSS Score: 4.3/10

All CVSS Scores

CVSS 3.x
4.3

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

CVSS 2.0
4.3

Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Description

ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow information disclosure, due to how the scripting engine handles objects in memory, aka “Scripting Engine Information Disclosure Vulnerability”. This CVE ID is unique from CVE-2018-0939.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-401

Exploits

Exploit ID: 44312

Source: exploitdb

URL: https://www.exploit-db.com/exploits/44312

Vulnerable Software (91)

Type: Configuration

Vendor: *

Product: edge

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23uri": "cpe:2....

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:9:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": ...

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:10:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*:*",          "vulnerable": true        },        {          "cpe23uri": "cpe:2....

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:11:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 14393.2125

Operating System: Windows 14393 build 2125

Identifier: KB4088787

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10586.1540

Operating System: Windows 10586 build 1540

Identifier: KB4093109

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.17797

Operating System: Windows 10240 build 17797

Identifier: KB4088786

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16299.309

Operating System: Windows 16299 build 309

Identifier: KB4088776

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 15063.966

Operating System: Windows 15063 build 966

Identifier: KB4088782

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4089187

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4503259

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB5051972

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 6.0

Operating System: Windows 6 build 0

Identifier: KB5003165

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4103768

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Operating System: Windows

Identifier: KB4483187

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.1.0.0

Operating System: Windows 0 build 0

Identifier: KB5011486

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.0.0.0

Operating System: Windows 0 build 0

Identifier: KB5003636

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.000

Operating System: Windows 1 build 0

Identifier: KB5066840

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 1.001

Operating System: Windows 1 build 1

Identifier: KB5031355

Source: msrc