CVE-2018-8617

Scores

EPSS

0.906high90.6%
0%20%40%60%80%100%

Percentile: 90.6%

CVSS

7.5high3.x
0246810

CVSS Score: 7.5/10

All CVSS Scores

CVSS 3.x
7.5

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS 2.0
7.6

Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Description

A remote code execution vulnerability exists in the way that the Chakra scripting engine handles objects in memory in Microsoft Edge, aka “Chakra Scripting Engine Memory Corruption Vulnerability.” This affects Microsoft Edge, ChakraCore. This CVE ID is unique from CVE-2018-8583, CVE-2018-8618, CVE-2018-8624, CVE-2018-8629.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-787

Related Vulnerabilities

Exploits

Exploit ID: 46202

Source: exploitdb

URL: https://www.exploit-db.com/exploits/46202

Exploit ID: CVE-2018-8617

Source: github-poc

URL: https://github.com/bb33bb/cve-2018-8617-aab-r-w-

Vulnerable Software (8)

Type: Configuration

Vendor: *

Product: chakracore

Operating System: * * *

Trait:
{  "cpe_match": [    {      "cpe23uri": "cpe:2.3:a:microsoft:chakracore:-:*:*:*:*:*:*:*",      "vulnerable": true    }  ],  "operator": "OR"}

Source: nvd

Type: Configuration

Vendor: *

Product: edge

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": "OR"    }, ...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 16299.846

Operating System: Windows 16299 build 846

Identifier: KB4471329

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 17134.471

Operating System: Windows 17134 build 471

Identifier: KB4471324

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 17763.194

Operating System: Windows 17763 build 194

Identifier: KB4471332

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 14393.2665

Operating System: Windows 14393 build 2665

Identifier: KB4471321

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.18063

Operating System: Windows 10240 build 18063

Identifier: KB4471323

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 15063.1506

Operating System: Windows 15063 build 1506

Identifier: KB4471327

Source: msrc

End of list