CVE-2018-8287: High severity Microsoft Internet Explorer vulnerability
A remote code execution vulnerability exists in the way the scripting engine handles objects in memory in Microsoft browsers, aka "Scripting Engine Memory Corruption Vulnerability." This affects ChakraCore, Internet Explorer 11, Microsoft Edge, Internet Explorer 10. This CVE ID is unique from CVE-2018-8242, CVE-2018-8283, CVE-2018-8288, CVE-2018-8291, CVE-2018-8296, CVE-2018-8298.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
nuget/Microsoft.ChakraCoreto a version that resolves this vulnerability.Fixed in 1.10.1
Event History
Frequently Asked Questions
What is the severity of CVE-2018-8287?
The severity of CVE-2018-8287 is rated high with a score of 7.6.
What types of software are affected by CVE-2018-8287?
CVE-2018-8287 affects Microsoft Internet Explorer, Microsoft Edge, and Microsoft ChakraCore.
How do I fix CVE-2018-8287?
To fix CVE-2018-8287, it is recommended to update your browser to the latest version provided by Microsoft.
What kind of vulnerability is CVE-2018-8287?
CVE-2018-8287 is a remote code execution vulnerability related to memory corruption in the scripting engine.
Can CVE-2018-8287 lead to data loss?
Yes, CVE-2018-8287 can lead to potential data loss or exposure due to its nature as a remote code execution vulnerability.