CVE-2018-8288

Scores

EPSS

0.763medium76.3%
0%20%40%60%80%100%

Percentile: 76.3%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS 2.0
7.6

Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Description

A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka “Scripting Engine Memory Corruption Vulnerability.” This affects ChakraCore, Internet Explorer 11, Microsoft Edge. This CVE ID is unique from CVE-2018-8242, CVE-2018-8283, CVE-2018-8287, CVE-2018-8291, CVE-2018-8296, CVE-2018-8298.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-787

Exploits

Exploit ID: 45213

Source: exploitdb

URL: https://www.exploit-db.com/exploits/45213

Vulnerable Software (257)

Type: Configuration

Vendor: *

Product: chakracore

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:*",      "versionEndExcluding": "1.10.1",      "vulnerable": true    }  ],  "operator": "OR"}

Source: nvd

Type: Configuration

Vendor: *

Product: edge

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": "OR"    }, ...

Source: nvd

Type: Configuration

Vendor: *

Product: internet_explorer

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:internet_explorer:11:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator":...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 14393.2363

Operating System: Windows 14393 build 2363

Identifier: KB4338814

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18135

Operating System: Windows 10240 build 18135

Identifier: KB4491101

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.19509

Operating System: Windows 10240 build 19509

Identifier: KB5020440

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21161

Operating System: Windows 10240 build 21161

Identifier: KB5066837

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21100

Operating System: Windows 10240 build 21100

Identifier: KB5063889

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.19986

Operating System: Windows 10240 build 19986

Identifier: KB5028622

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18218

Operating System: Windows 10240 build 18218

Identifier: KB4505051

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.19179

Operating System: Windows 10240 build 19179

Identifier: KB5010789

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18609

Operating System: Windows 10240 build 18609

Identifier: KB4567518

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21073

Operating System: Windows 10240 build 21073

Identifier: KB5062561

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21034

Operating System: Windows 10240 build 21034

Identifier: KB5060998

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18187

Operating System: Windows 10240 build 18187

Identifier: KB4498375

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21128

Operating System: Windows 10240 build 21128

Identifier: KB5065430

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18334

Operating System: Windows 10240 build 18334

Identifier: KB4522009

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18875

Operating System: Windows 10240 build 18875

Identifier: KB5001631

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10.0.10240.21014

Operating System: Windows 10240 build 21014

Identifier: KB5058387

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18308

Operating System: Windows 10240 build 18308

Identifier: KB4517276

Source: msrc