7.6
CVSSv2

CVE-2016-7288

Published: 20/12/2016 Updated: 12/10/2018
CVSS v2 Base Score: 7.6 | Impact Score: 10 | Exploitability Score: 4.9
CVSS v3 Base Score: 7.5 | Impact Score: 5.9 | Exploitability Score: 1.6
VMScore: 765
Vector: AV:N/AC:H/Au:N/C:C/I:C/A:C

Vulnerability Summary

The scripting engines in Microsoft Edge allow remote malicious users to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Scripting Engine Memory Corruption Vulnerability," a different vulnerability than CVE-2016-7286, CVE-2016-7296, and CVE-2016-7297.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft edge -

Exploits

<!-- Source: bugschromiumorg/p/project-zero/issues/detail?id=983 There is a use-after-free in TypedArraysort In TypedArrayCompareElementsHelper (chromiumgooglesourcecom/external/githubcom/Microsoft/ChakraCore/+/TimeTravelDebugging/lib/Runtime/Library/TypedArraycpp), the comparison function is called with the following co ...