Information Disclosure Vulnerability in Microsoft Edge Web Browser
CVE-2020-1242
Key Information:
- Vendor
- Microsoft
- Status
- Microsoft Edge (edgehtml-based) On Windows 10 Version 2004 For X64-based Systems
- Microsoft Edge (edgehtml-based) On Windows 10 Version 2004 For Arm64-based Systems
- Microsoft Edge (edgehtml-based) On Windows 10 Version 2004 For 32-bit Systems
- Microsoft Edge (edgehtml-based) On Windows 10 Version 1803 For 32-bit Systems
- Vendor
- CVE Published:
- 9 June 2020
Summary
An information disclosure vulnerability in Microsoft Edge occurs due to improper handling of cross-origin requests. An attacker capable of exploiting this vulnerability can gain unauthorized access to sensitive information from another domain, potentially leading to data leaks. Organizations are encouraged to apply the latest security updates provided by Microsoft to mitigate this risk and protect users from potential exploitation.
Affected Version(s)
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for 32-bit Systems = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for ARM64-based Systems = unspecified
Microsoft Edge (EdgeHTML-based) on Windows 10 Version 1803 for x64-based Systems = unspecified
References
CVSS V3.1
Timeline
Vulnerability published
Vulnerability Reserved