Information Disclosure Vulnerability in Microsoft Edge by Microsoft
CVE-2019-1356
6.5MEDIUM
Key Information:
- Vendor
- Microsoft
- Status
- Vendor
- CVE Published:
- 10 October 2019
Summary
An information disclosure vulnerability in Microsoft Edge occurs due to improper handling of objects in memory. This may allow an attacker to access sensitive data or system information. Users should ensure they are using the latest version of Microsoft Edge to mitigate this risk, as updates from Microsoft address this issue effectively.
Affected Version(s)
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for 32-bit Systems = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1607 for x64-based Systems = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1703 for 32-bit Systems = unspecified
References
CVSS V3.1
Score:
6.5
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved