CVE-2018-8570 is a remote code execution vulnerability affecting Internet Explorer 11, specifically due to improper memory access. This high-severity flaw (CVSS 7.5) requires user interaction and high attack complexity, but could lead to complete compromise of confidentiality, integrity, and availability. While no public exploit code or active exploitation is reported, it garnered some media attention during its disclosure. The vulnerability is not listed in CISA's KEV catalog.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
11CPE matchmatch criteria | cpe:2.3:a:microsoft:internet_explorer:11:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.3 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.