PT-2017-18450 · Microsoft · Windows 10+1
Published
2017-08-08
·
Updated
2017-08-14
·
CVE-2017-8642
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:N/I:P/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Edge in Microsoft Windows 10 version 1703
Description
An elevation of privilege issue exists due to the way Microsoft Edge validates JavaScript under specific conditions, potentially allowing script to run with elevated privileges.
Recommendations
For Microsoft Edge in Microsoft Windows 10 version 1703, consider restricting the execution of JavaScript under specific conditions to minimize the risk of exploitation until a patch is available.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Edge
Windows 10