← back
CVE-2018-0818

CVE-2018-0818

EPSS 3.7%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 3.7%KEV nãoPoC Nuclei Metasploit Patch
Lifecycle
10 Jan 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft ChakraCore allows an attacker to bypass Control Flow Guard (CFG) in conjunction with another vulnerability to run arbitrary code on a target system, due to how the Chakra scripting engine handles accessing memory, aka "Scripting Engine Security Feature Bypass".

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →