PT-2019-3014 · Microsoft · Edge
Abdulrahman Al-Qabandi
·
Published
2019-08-13
·
Updated
2026-02-20
·
CVE-2019-1030
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
Microsoft Edge (affected versions not specified)
Description
An information disclosure issue exists due to improper handling of objects in memory by Microsoft Edge. This could allow an attacker to obtain information that could further compromise a user's system. The vulnerability can be exploited through a web-based attack, where an attacker hosts a specially crafted website or compromises a website that accepts user-provided content. However, the attacker would need to convince the user to view the malicious content, as they cannot force the user to do so. For example, the attacker might trick the user into clicking a link to their site.
Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Edge