Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:13627
HistoryApr 11, 2019 - 1:54 a.m.

Remote Code Execution (RCE)

2019-04-1101:54:09
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.043 Low

EPSS

Percentile

92.4%

ChakraCore is vulnerable to remote code execution (RCE). The vulnerability exists due to a type confusion with DeleteElemI_A and DeleteElemIStrict_A, which causes memory corruption and allows a remote attacker to execute arbitrary code in the context of the authenticated user for the process.