← Back

CVE-2018-8470

nvd nist
Published: Sep 13, 2018Modified: Nov 21, 2024

JSON object

Loading...
6.1
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: NVD

Description

A security feature bypass vulnerability exists in Internet Explorer due to how scripts are handled that allows a universal cross-site scripting (UXSS) condition, aka "Internet Explorer Security Feature Bypass Vulnerability." This affects Internet Explorer 11.

Affected (1)

1 product
Internet Explorer
Configuration A
1 vulnerable · 11 platform
Vulnerable SoftwareAffected Versions
Version 11
Running on/withPlatform Versions
Microsoft
Windows 10
All versions
Microsoft
Windows 10
Version 1607
Microsoft
Windows 10
Version 1703
Microsoft
Windows 10
Version 1709
Microsoft
Windows 10
Version 1803
Microsoft
Windows 7
All versions
Microsoft
Windows 8.1
All versions
Microsoft
Windows 8.1
All versions
Microsoft
Windows Server
Version 2008 r2
Microsoft
Windows Server
Version 2012 r2
Microsoft
Windows Server
Version 2016

References (6)

Source: secure@microsoft.com
Third Party AdvisoryVDB Entry
Source: secure@microsoft.com
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
Third Party AdvisoryVDB Entry
Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.