Spoofing Vulnerability in Microsoft Edge for iOS and Android
CVE-2025-21253
5.3MEDIUM
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 6 February 2025
Summary
A spoofing vulnerability has been identified in Microsoft Edge, impacting both iOS and Android versions. This flaw allows an attacker to manipulate the appearance of displayed content, potentially misleading users into believing that they are interacting with a legitimate entity. This vulnerability poses significant risks to data privacy and can lead to phishing attacks and other malicious activities. Users are advised to keep their Microsoft Edge browsers updated to mitigate potential threats.
Affected Version(s)
Microsoft Edge for Android Unknown 1.0.0 < 133.0.3065.51
Microsoft Edge for iOS Unknown 1.0.0.0 < 133.0.3065.51
References
CVSS V3.1
Score:
5.3
Severity:
MEDIUM
Confidentiality:
Low
Integrity:
None
Availability:
Low
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved