CVE-2018-8249: High severity Microsoft Internet Explorer vulnerability
Published Jun 14, 2018
·Updated
A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-0978.
Affected Software
12 affected components
Microsoft Internet Explorer=11
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012=r2
All of the following
Microsoft Internet Explorer=11
Any of the following
Microsoft Windows 7=sp1
Microsoft Windows 8.1
Microsoft Windows RT 8.1
Microsoft Windows Server 2008=r2-sp1
Microsoft Windows Server 2012=r2
Remediation
Event History
Jun 14, 2018
CVE Published
via MITRE·12:00 PM
Data Sourced
via MITRE·12:00 PM
DescriptionWeakness
Data Sourced
via NVD·12:29 PM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What conditions are required for exploitation?
The attack can be carried out remotely without privileges, but it requires user interaction and has high attack complexity. Successful exploitation can result in remote code execution with high impacts to confidentiality, integrity, and availability.
2
Which browser version is identified as affected?
The provided information identifies Internet Explorer 11 as affected.
3
Is a fix available?
Yes. A patch is available for this vulnerability.