CVE-2018-0870

HIGH

Description

A remote code execution vulnerability exists when Internet Explorer improperly accesses objects in memory, aka "Internet Explorer Memory Corruption Vulnerability." This affects Internet Explorer 11. This CVE ID is unique from CVE-2018-0991, CVE-2018-0997, CVE-2018-1018, CVE-2018-1020.

References

http://www.securityfocus.com/bid/103595

http://www.securitytracker.com/id/1040653

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-0870

Details

Source: MITRE

Published: 2018-04-12

Updated: 2018-05-15

Type: CWE-119

Risk Information

CVSS v2.0

Base Score: 7.6

Vector: (AV:N/AC:H/Au:N/C:C/I:C/A:C)

Impact Score: 10

Exploitability Score: 4.9

Severity: HIGH

CVSS v3.0

Base Score: 7.5

Vector: CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 1.6

Severity: HIGH