CVE Database
/

CVE-2018-0818

Back to search

CVE-2018-0818

Published: Jan 10, 2018

Modified: Sep 16, 2024

PUBLISHED

Description

Microsoft ChakraCore allows an attacker to bypass Control Flow Guard (CFG) in conjunction with another vulnerability to run arbitrary code on a target system, due to how the Chakra scripting engine handles accessing memory, aka "Scripting Engine Security Feature Bypass".

VendorProductVersions

Microsoft Corporation

ChakraCore

affected
ChakraCore

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now