Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability
CVE-2023-21775

8.3HIGH

Key Information:

Summary

A remote code execution vulnerability exists in Microsoft Edge (Chromium-based) that could allow an attacker to execute arbitrary code on the target system. This is possible because the vulnerability affects the way the browser handles certain requests. If successfully exploited, attackers could potentially gain unauthorized access to sensitive information or escalate privileges. It is critical for users to apply the latest software updates to mitigate risks associated with this vulnerability.

Affected Version(s)

Microsoft Edge (Chromium-based) Extended Stable Unknown 1.0.0 < 108.0.1462.83

Microsoft Edge (Chromium-based) Unknown 1.0.0 < 109.0.1518.49

References

CVSS V3.1

Score:
8.3
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.