Microsoft Edge Cumulative Security Update
Last Update Date:
14 Oct 2015 10:20
Release Date:
14 Oct 2015
4003
Views
RISK: High Risk
TYPE: Clients - Browsers
- Microsoft Edge Information Disclosure Vulnerability
An information disclosure vulnerability exists when Microsoft Edge improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user's computer. - Microsoft Edge XSS Filter Bypass
A cross-site scripting (XSS) filter bypass exists in the way that Microsoft Edge disables an HTML attribute in otherwise appropriately filtered HTTP response data. The bypass could allow initially disabled scripts to run in the wrong security context, leading to information disclosure.
Impact
- Security Restriction Bypass
- Information Disclosure
System / Technologies affected
- Microsoft Edge
Solutions
Before installation of the software, please visit the software manufacturer web-site for more details.
- Download location for patches:
https://technet.microsoft.com/en-us/library/security/MS15-107
Vulnerability Identifier
Source
Related Link
Share with