CVE-2018-0818 describes a security feature bypass vulnerability in Microsoft ChakraCore, allowing an attacker to circumvent Control Flow Guard (CFG) when combined with another vulnerability. This high-severity flaw (CVSS 7.5) requires user interaction and high attack complexity, but could lead to complete compromise of confidentiality, integrity, and availability. While not listed on CISA's KEV catalog, its FAUCET Risk Score is 91/100, and there is no public exploit code available in Metasploit, Nuclei, or ExploitDB.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:chakracore:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.