Microsoft Edge Multiple Vulnerabilities
RISK: Extremely High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities were identified in Microsoft Edge, a remote attacker could exploit some of these vulnerabilities to trigger remote code execution, sensitive information disclosure and security restriction bypass on the targeted system.
Note:
CVE-2021-37973 is being exploited in the wild.
Impact
- Remote Code Execution
- Information Disclosure
- Security Restriction Bypass
System / Technologies affected
- Microsoft Edge prior to 94.0.992.31
Solutions
Before installation of the software, please visit the software vendor web-site for more details.
The vendor has issued a fix:
- Update to version 94.0.992.31
Vulnerability Identifier
- CVE-2021-37956
- CVE-2021-37957
- CVE-2021-37958
- CVE-2021-37959
- CVE-2021-37960
- CVE-2021-37961
- CVE-2021-37962
- CVE-2021-37963
- CVE-2021-37964
- CVE-2021-37965
- CVE-2021-37966
- CVE-2021-37967
- CVE-2021-37968
- CVE-2021-37969
- CVE-2021-37970
- CVE-2021-37971
- CVE-2021-37972
- CVE-2021-37973
Source
Related Link
https://chromereleases.googleblog.com/2021
https://msrc.microsoft.com/update-guide/en-us
Share with