[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247974

 
 

909

 
 

194654

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Microsoft Edge Security Feature Bypass Vulnerability - CVE-2019-0612

ID: oval:org.secpod.oval:def:51348Date: (C)2019-03-13   (M)2024-03-06
Class: VULNERABILITYFamily: windows




A security feature bypass vulnerability exists when Click2Play protection in Microsoft Edge improperly handles flash objects. By itself, this bypass vulnerability does not allow arbitrary code execution. However, an attacker could use the bypass vulnerability in conjunction with another vulnerability, such as a remote code execution vulnerability, to run arbitrary code on a target system. To exploit the CFG bypass vulnerability, a user must be logged on and running an affected version of Microsoft Edge. The user would then need to browse to a malicious website. The security update addresses the bypass vulnerability by helping to ensure that Click2Play protection Microsoft Edge properly handles flash objects.

Platform:
Microsoft Windows Server 2019
Microsoft Windows 10
Product:
Microsoft Edge
Reference:
CVE-2019-0612
CVE    1
CVE-2019-0612
CPE    14
cpe:/a:microsoft:edge
cpe:/o:microsoft:windows_10:1703:::x64
cpe:/o:microsoft:windows_10:1703:::x86
cpe:/o:microsoft:windows_10:1709
...

© SecPod Technologies