VDB
CVE-2022-4262
CVE-2022-4262
PUBLISHED
KEV
Es existiert eine Type Confusion Schwachstelle in Google Chrome und Microsoft Edge in der "V8" Komponente. Ein Angreifer kann dies zur Ausführung von beliebigem Code ausnutzen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich, beispielsweise das Laden einer bösartig gestalteten Webseite.
EPSS 8.56% · 92.6th percentile
Risk Scores
EPSS Score
8.56%
92.6th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Debian | Debian Linux | |
| Microsoft | Microsoft Edge < 108.0.1462.42 | |
| Microsoft | Microsoft Edge |
Exploit Intelligence
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- mistymntncop/CVE-2022-4262 (github-poc-repo)
- quangnh89/CVE-2022-4262 (github-poc-repo)
- quangnh89/CVE-2022-4262 (github-poc-repo)
…and 110 more exploits
Timeline
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 20, 1970 VulnCheck XDB Entry
- Jan 21, 1970 VulnCheck XDB Entry
- Jun 8, 2021 VulnCheck KEV Exploitation
- Aug 15, 2022 VulnCheck KEV Exploitation
- Dec 2, 2022 CVE Published
- Dec 2, 2022 PoC Published
- Dec 3, 2022 EPSS Score
- Dec 5, 2022 CISA KEV Added
References
- https://wid.cert-bund.de/.well-known/csaf/white/2022/wid-sec-w-2022-2221.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2022-2221 advisory
- https://docs.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security advisory
- https://www.debian.org/security/2022/dsa-5295 advisory
- https://learn.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security advisory
- http://chromereleases.googleblog.com/2022/12/stable-channel-update-for-desktop.html advisory