CVE-2018-12292

Description

A use-after-free vulnerability exists in DOMProxyHandler::EnsureExpandoObject in Pale Moon before 27.9.3.

Risk Information

Base Score
9.8
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
11.314

Associated Vulnerability

VulnerabilityOS Platform
Multiple vulnerabilities affected in Pale Moon (x64) 27.9.2Windows
Multiple vulnerabilities affected in Pale Moon 27.9.2Windows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-342806Pale Moon (x64) (33.4.1)
PATCH-342805Pale Moon (33.4.1)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234