[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft Edge Security Feature Bypass Vulnerability - CVE-2017-8599

ID: oval:org.secpod.oval:def:41188Date: (C)2017-07-12   (M)2024-03-06
Class: VULNERABILITYFamily: windows




A security feature bypass vulnerability exists when Microsoft Edge fails to correctly apply Same Origin Policy for HTML elements present in other browser windows. An attacker could use this vulnerability to trick a user into loading a page with malicious content.To exploit this vulnerability, an attacker would need to trick a user into loading a page or visiting a website. The page could also be injected into a compromised website or ad network.The update addresses the vulnerability by correcting the Same Origin Policy check for scripts attempting to manipulate HTML elements in other browser windows.

Platform:
Microsoft Windows 10
Microsoft Windows Server 2016
Product:
Microsoft Edge
Reference:
CVE-2017-8599
CVE    1
CVE-2017-8599
CPE    14
cpe:/o:microsoft:windows_10
cpe:/o:microsoft:windows_10:1511
cpe:/o:microsoft:windows_server_2016:::x64
cpe:/o:microsoft:windows_10:1607:::x64
...

© SecPod Technologies