PT-2020-4693 · Microsoft · Chakra Scripting Engine+1

Published

2020-11-10

·

Updated

2023-12-31

·

CVE-2020-17054

CVSS v2.0

7.6

High

VectorAV:N/AC:H/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Chakra Scripting Engine (affected versions not specified)
Description The issue is caused by a buffer overflow in memory, allowing a remote attacker to disclose protected information. It affects the Chakra scripting engine, potentially enabling attackers to impact the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Out of bounds Read

Memory Corruption

Weakness Enumeration

Related Identifiers

BDU:2020-05245
CVE-2020-17054
GHSA-88CW-3M6X-49F7

Affected Products

Chakra Scripting Engine
Edge