216.73.217.22

CVE-2017-5070

· Published 27/10/2017 07:29 · Modified 22/04/2026 23:55 · Author: Cybersecurity and Infrastructure Security Agency

Labels: CVE-2017-5070

Essential information

Published
27/10/2017 07:29
Modified
22/04/2026 23:55
Author
Cybersecurity and Infrastructure Security Agency
Creator
Cybersecurity and Infrastructure Security Agency
CVSS
6.8 (v2) 8.8 HIGH (v3.1)
CISA KEV
Yes
CWE
CWE-843
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

CVSS metrics

Description

Google Chromium V8 Engine contains a type confusion vulnerability that allows a remote attacker to execute code inside a sandbox via a crafted HTML page. This vulnerability could affect multiple web browsers that utilize Chromium, including, but not limited to, Google Chrome, Microsoft Edge, and Opera.

NVD status

NVD
View on NVD