CVE-2018-0891: Medium severity internet explorer vulnerability
ChakraCore, and Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 and R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Internet Explorer and Microsoft Edge in Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allow information disclosure, due to how the scripting engine handles objects in memory, aka "Scripting Engine Information Disclosure Vulnerability". This CVE ID is unique from CVE-2018-0939.
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the severity of CVE-2018-0891?
CVE-2018-0891 has a severity rating of important indicating a significant risk of information disclosure.
How do I fix CVE-2018-0891?
To fix CVE-2018-0891, you should apply the latest security updates provided by Microsoft for affected software.
Which software versions are affected by CVE-2018-0891?
CVE-2018-0891 affects Internet Explorer 9, 10, and 11, as well as Microsoft Edge on various Windows platforms.
Can CVE-2018-0891 be exploited remotely?
Yes, CVE-2018-0891 can potentially be exploited remotely by an attacker through a malicious web page.
What is the impact of CVE-2018-0891?
The impact of CVE-2018-0891 is that it allows an attacker to gain access to sensitive information from the user's system.