Files
CVEs-PoC/2018/CVE-2018-6064.md
T
2024-08-05 18:41:32 +00:00

23 lines
920 B
Markdown

### [CVE-2018-6064](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-6064)
![](https://img.shields.io/static/v1?label=Product&message=Chrome&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=%3C%2065.0.3325.146%20&color=brighgreen)
![](https://img.shields.io/static/v1?label=Vulnerability&message=Type%20Confusion&color=brighgreen)
### Description
Type Confusion in the implementation of __defineGetter__ in V8 in Google Chrome prior to 65.0.3325.146 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page.
### POC
#### Reference
- https://www.exploit-db.com/exploits/44394/
#### Github
- https://github.com/ARPSyndicate/cvemon
- https://github.com/lnick2023/nicenice
- https://github.com/otravidaahora2t/js-vuln-db
- https://github.com/qazbnm456/awesome-cve-poc
- https://github.com/tunz/js-vuln-db
- https://github.com/xbl3/awesome-cve-poc_qazbnm456