CVE-2018-8123 describes an information disclosure vulnerability in Microsoft Edge, stemming from improper handling of objects in memory. This vulnerability has a CVSS score of 4.3 (Medium), indicating a network-based attack requiring user interaction, with a low impact on confidentiality and no impact on integrity or availability. While there is no known active exploitation or public exploit code available (Metasploit, Nuclei, ExploitDB), the vulnerability received some community discussion and media coverage at the time of its disclosure in May 2018.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
Range not provided by sourceCPE matchmatch criteria | cpe:2.3:a:microsoft:edge:-:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.