← Back

CVE-2020-0813

nvd nist
Published: Mar 12, 2020Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

An information disclosure vulnerability exists when Chakra improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user’s computer or data.To exploit the vulnerability, an attacker must know the memory address of where the object was created.The update addresses the vulnerability by changing the way certain functions handle objects in memory., aka 'Scripting Engine Information Disclosure Vulnerability'.

Affected (2)

2 products
Chakracore
Edge
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Configuration B
1 vulnerable · 6 platform
Vulnerable SoftwareAffected Versions
All versions
Running on/withPlatform Versions
Microsoft
Windows 10
Version 1709
Microsoft
Windows 10
Version 1803
Microsoft
Windows 10
Version 1809
Microsoft
Windows 10
Version 1903
Microsoft
Windows 10
Version 1909
Microsoft
Windows Server 2019
All versions

References (2)

Source: af854a3a-2127-422b-91ae-364da2661108
PatchVendor Advisory

Timeline

No history available yet.