60
CVE-2018-0925
—CVSS 3.0
7.5 high
EPSS
11%p96
Published
()
Modified
Description
ChakraCore allows remote code execution, due to how the ChakraCore scripting engine handles objects in memory, aka "Scripting Engine Memory Corruption Vulnerability". This CVE ID is unique from CVE-2018-0876, CVE-2018-0889, CVE-2018-0893, and CVE-2018-0935.
- Vendors
- microsoft
- Products
- chakracore
- Weakness
- CWE-787
- Vector
- CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H