Memory Corruption Vulnerability in Microsoft Edge on Windows 10 and Server 2016
CVE-2017-8595

7.5HIGH

Key Information:

Summary

Microsoft Edge in Windows 10 and Windows Server 2016 has a security flaw where the JavaScript engine improperly handles memory objects. This can lead to execution of arbitrary code within the context of the current user. Attackers may exploit this vulnerability to execute harmful scripts on affected systems, impacting user security and data integrity.

Affected Version(s)

Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 Microsoft Edge

References

EPSS Score

9% chance of being exploited in the next 30 days.

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.