Information Disclosure Vulnerability in Microsoft Edge by Microsoft
CVE-2019-1356

6.5MEDIUM

Summary

An information disclosure vulnerability in Microsoft Edge occurs due to improper handling of objects in memory. This may allow an attacker to access sensitive data or system information. Users should ensure they are using the latest version of Microsoft Edge to mitigate this risk, as updates from Microsoft address this issue effectively.

Affected Version(s)

Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for 32-bit Systems = unspecified

Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for x64-based Systems = unspecified

Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1703 for 32-bit Systems = unspecified

References

CVSS V3.1

Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.