CVE-2018-8324 — Sensitive Information Exposure in Microsoft Edge
Severity
4.3MEDIUMNVD
EPSS
4.2%
top 11.30%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedJul 11
Latest updateMay 14
Description
An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8289, CVE-2018-8297, CVE-2018-8325.
CVSS vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4
Affected Packages1 packages
Patches
🔴Vulnerability Details
8GHSA▶
GHSA-645w-g9v6-7mvr: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vu↗2022-05-14
GHSA▶
GHSA-6436-xf58-6mvp: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vu↗2022-05-14
GHSA▶
GHSA-8ccw-5hjp-6rg9: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vu↗2022-05-14
GHSA▶
GHSA-9cq7-rgrh-hrhc: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vu↗2022-05-14
CVEList▶
CVE-2018-8297: An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka "Microsoft Edge Information Disclosure Vu↗2018-07-11