Unknown
CVE-2020-0713
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
CVE-2020-0713
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Description
A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory, aka ‘Scripting Engine Memory Corruption Vulnerability’. This CVE ID is unique from CVE-2020-0673, CVE-2020-0674, CVE-2020-0710, CVE-2020-0711, CVE-2020-0712, CVE-2020-0767.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
- Microsoft
Products
- ChakraCore,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for ARM64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1809 for ARM64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows Server 2019,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1709 for ARM64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1903 for ARM64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows Server 2016,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for 32-bit Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for x64-based Systems,
- Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1909 for ARM64-based Systems
References
Additional Info
Technical Analysis
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: