CyberRota Analysis
AI analysis pending.
CISA KEV Details
Status: This CVE is listed in CISA's Known Exploited Vulnerabilities catalog.
Ransomware use: Unknown
Added to KEV: 2022-06-08
Required action: Apply updates per vendor instructions.
CVE
CVE-2018-17480
Severity
HIGH
CVSS
8.8
EPSS
34.29%
Chrome Java
Original NVD Description
Execution of user supplied Javascript during array deserialization leading to an out of bounds write in V8 in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page.