A remote code execution vulnerability exists in the way that the scripting engine handles objects in memory in Internet Explorer, aka "Scripting Engine Memory Corruption Vulnerability." This affects Internet Explorer 9, Internet Explorer 11, Internet Explorer 10. This CVE ID is unique from CVE-2018-8643.
References
| Link | Resource |
|---|---|
| http://www.securityfocus.com/bid/106255 | Broken Link Third Party Advisory VDB Entry |
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8653 | Patch Vendor Advisory |
| http://www.securityfocus.com/bid/106255 | Broken Link Third Party Advisory VDB Entry |
| https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8653 | Patch Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8653 | US Government Resource |
Configurations
Configuration 1 (hide)
| AND |
|
Configuration 2 (hide)
| AND |
|
Configuration 3 (hide)
| AND |
|
History
29 Oct 2025, 14:46
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2018-8653 - US Government Resource |
22 Oct 2025, 00:16
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 20:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
21 Oct 2025, 19:17
| Type | Values Removed | Values Added |
|---|---|---|
| References |
|
|
| References | () http://www.securityfocus.com/bid/106255 - Broken Link, Third Party Advisory, VDB Entry |
07 Apr 2025, 20:45
| Type | Values Removed | Values Added |
|---|---|---|
| First Time |
Microsoft windows 10 1607
Microsoft windows 10 1809 Microsoft windows 10 1507 Microsoft windows 10 1709 Microsoft windows 10 1803 Microsoft windows 10 1703 |
|
| References | () http://www.securityfocus.com/bid/106255 - Third Party Advisory, VDB Entry, Broken Link | |
| CPE | cpe:2.3:o:microsoft:windows_10:1709:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1803:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1809:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10:-:*:*:*:*:*:*:* |
cpe:2.3:o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:* cpe:2.3:o:microsoft:windows_10_1809:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1803:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1703:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1607:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1507:-:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows_10_1709:*:*:*:*:*:*:*:* |
21 Nov 2024, 04:14
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://www.securityfocus.com/bid/106255 - Third Party Advisory, VDB Entry | |
| References | () https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8653 - Patch, Vendor Advisory |
Information
Published : 2018-12-20 13:29
Updated : 2025-10-29 14:46
NVD link : CVE-2018-8653
Mitre link : CVE-2018-8653
CVE.ORG link : CVE-2018-8653
JSON object : View
Products Affected
microsoft
- windows_10_1809
- windows_7
- windows_10_1703
- windows_10_1709
- windows_8.1
- windows_server_2012
- internet_explorer
- windows_rt_8.1
- windows_10_1607
- windows_server_2019
- windows_server_2016
- windows_10_1803
- windows_10_1507
- windows_server_2008
CWE
CWE-787
Out-of-bounds Write
