Skip to main content

Microsoft Edge Cumulative Security Update

Last Update Date: 14 Oct 2015 10:20 Release Date: 14 Oct 2015 3147 Views

RISK: High Risk

TYPE: Clients - Browsers

TYPE: Browsers
  1. Microsoft Edge Information Disclosure Vulnerability
    An information disclosure vulnerability exists when Microsoft Edge improperly discloses the contents of its memory, which could provide an attacker with information to further compromise the user's computer.
  2. Microsoft Edge XSS Filter Bypass
    A cross-site scripting (XSS) filter bypass exists in the way that Microsoft Edge disables an HTML attribute in otherwise appropriately filtered HTTP response data. The bypass could allow initially disabled scripts to run in the wrong security context, leading to information disclosure.

Impact

  • Security Restriction Bypass
  • Information Disclosure

System / Technologies affected

  • Microsoft Edge

Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.


Vulnerability Identifier


Source


Related Link