CVE-2018-0800 is an information disclosure vulnerability in the Microsoft Edge scripting engine on Windows 10 version 1709, allowing an attacker to gain information for further system compromise. With a CVSS score of 5.3 (Medium), it requires user interaction and high attack complexity, but can lead to high confidentiality impact. While it has a high FAUCET Risk Score of 80/100 and notable community discussion, there is no known active exploitation, public exploit code, or KEV listing.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
<= 1.7.6CPE matchmatch criteria | cpe:2.3:a:microsoft:chakracore:*:*:*:*:*:*:*:* | ||
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.2 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.
The average CVE in this peer group has 0.2 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.