CVE-2020-0970 PUBLISHED CVSS 7.599999904632568 HIGH

A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka 'Scripting Engine Memory Corruption Vulnerability'. This CVE ID is unique from CVE-2020-0968.

EPSS 38.32% · 97.2th percentile

Risk Scores

CVSS v2.0
7.599999904632568
EPSS Score
38.32%
97.2th percentile

Affected Products

VendorProductVersions
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for ARM64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for 32-bit Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows Server 2019unspecified
MicrosoftChakraCoreunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for ARM64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for 32-bit Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for ARM64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for x64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for 32-bit Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for x64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for x64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for x64-based Systemsunspecified
microsoftchakracore0
microsoftedge
NuGetMicrosoft.ChakraCore0
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for ARM64-based Systemsunspecified
MicrosoftMicrosoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for 32-bit Systemsunspecified

Timeline

References

Open in Interactive Console →