← back
CVE-2018-18342

CVE-2018-18342

EPSS 2.7%
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS EPSS 2.7%KEV nãoPoC Nuclei Metasploit Patch referenciado
Lifecycle
11 Dec 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Execution of user supplied Javascript during object deserialization can update object length leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.
Affected products
Google · Chrome

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →