CVE-2018-8464
high · 7.5An remote code execution vulnerability exists when Microsoft Edge PDF Reader improperly handles objects in memory, aka "Microsoft Edge PDF Remote Code Execution Vulnerability." This affects Microsoft Edge.
7.5
CVSS
42.6%
EPSS (exploit prob.)
99th
EPSS percentile
2018-09-13
Published
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | edge | all versions |
| microsoft | windows_10 | all versions |
| microsoft | windows_10 | 1511 |
| microsoft | windows_10 | 1607 |
| microsoft | windows_10 | 1703 |
| microsoft | windows_10 | 1709 |
| microsoft | windows_server_2016 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/105265
- http://www.securitytracker.com/id/1041623
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8464
- https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/
- http://www.securityfocus.com/bid/105265
- http://www.securitytracker.com/id/1041623
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8464
- https://research.checkpoint.com/2018/50-adobe-cves-in-50-days/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2018-8464