peter bassill · operator
$ cve CVE-2018-8463 JSON

CVE-2018-8463 EXPLOIT

7.4
HIGH · CVSS 3.0 · EPSS 15.4% (pctl 97)

Patch early

A public exploit exists.

Description

An elevation of privilege vulnerability exists in Microsoft Edge that could allow an attacker to escape from the AppContainer sandbox in the browser, aka "Microsoft Edge Elevation of Privilege Vulnerability." This affects Microsoft Edge. This CVE ID is unique from CVE-2018-8469.

Scoring

CVSS7.4 (HIGH, v3.0)
VectorCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:H/A:N
EPSS15.42% — more likely to be exploited than 97% of all CVEs
On CISA KEVno
Public exploityes
Published2018-09-13
Last modified2026-06-17

Affected (2)

VendorProduct
microsoftedge
microsoftwindows 10

Public exploits

SourceTitleDate
exploit-dbMicrosoft Edge - Sandbox Escape2018-09-27

References

→ the Explorer  ·  watch your stack  ·  NVD