CVE Number | Vulnerability | Product | Severity | Date |
---|---|---|---|---|
MS17-007 | Cumulative Security Update for Microsoft Edge (4013071) | Microsoft Edge | Critical | 15-03-2017 |
Technical Information
Brief overview of the risk:
This security update resolves vulnerabilities in . The most severe of the vulnerabilities could allow remote code execution if a user views a specially crafted webpage using .
Detailed Information on the risk:
Multiple spoofing vulnerabilities exist when a Microsoft browser does not properly parse HTTP responses. An attacker who successfully exploited these vulnerabilities could trick a user by redirecting them to a specially crafted website. The specially crafted website could spoof content or be used as a pivot to chain an attack with other vulnerabilities in web services.Further information on this exploit is available at : MS17-007