Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6890
HistoryJun 29, 2018 - 4:41 a.m.

Remote Code Execution (RCE)

2018-06-2904:41:49
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
7

EPSS

0.953

Percentile

99.4%

Microsoft ChakraCore is vulnerable to remote code execution. This is due to an unrestored bytecode register after bailout, which could lead to memory corruption and allow an attacker to execute arbitrary code in the context of the authenticated user. This CVE ID is different from CVE-2018-8130, CVE-2018-8133, CVE-2018-8145, CVE-2018-8177.