Microsoft Edge Multiple Vulnerabilities
RISK: High Risk
TYPE: Clients - Browsers
Multiple vulnerabilities were identified in Microsoft Edge. A remote attacker could exploit some of these vulnerabilities to trigger elevation of privilege, denial of service condition, remote code execution, information disclosure and security restriction bypass on the targeted system.
Note:
Proof of Concept exploit code is publicly available for CVE-2023-21775.
Impact
- Denial of Service
- Remote Code Execution
- Information Disclosure
- Security Restriction Bypass
- Elevation of Privilege
System / Technologies affected
- Microsoft Edge prior to 109.0.1518.49
Solutions
Before installation of the software, please visit the software vendor web-site for more details.
Apply fixes issued by the vendor:
- Update to version 109.0.1518.49 or later
Vulnerability Identifier
- CVE-2023-0129
- CVE-2023-0130
- CVE-2023-0131
- CVE-2023-0132
- CVE-2023-0133
- CVE-2023-0134
- CVE-2023-0135
- CVE-2023-0136
- CVE-2023-0138
- CVE-2023-0139
- CVE-2023-0140
- CVE-2023-0141
- CVE-2023-21775
- CVE-2023-21796
Source
Related Link
Related Tags
Share with