CVE-2017-8652

Scores

EPSS

0.617medium61.7%
0%20%40%60%80%100%

Percentile: 61.7%

CVSS

6.5medium3.x
0246810

CVSS Score: 6.5/10

All CVSS Scores

CVSS 3.x
6.5

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

CVSS 2.0
4.3

Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Description

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka “Microsoft Edge Information Disclosure Vulnerability”. This CVE ID is unique from CVE-2017-8644 and CVE-2017-8662.

Scaner-VS 7 — a modern vulnerability management solution

Uses this database for vulnerability detection. High-speed search, cross-platform, advanced configuration audit, and flexible filtering. Suitable for organizations of any size.
Learn more about Scaner-VS 7

Sources

msrcnvd

CWEs

CWE-200

Exploits

Exploit ID: 42445

Source: exploitdb

URL: https://www.exploit-db.com/exploits/42445

Vulnerable Software (5)

Type: Configuration

Vendor: *

Product: edge

Operating System: * * *

Trait:
{  "children": [    {      "cpe_match": [        {          "cpe23uri": "cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*:*",          "vulnerable": true        }      ],      "operator": "OR"    }, ...

Source: nvd

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 14393.1593

Operating System: Windows 14393 build 1593

Identifier: KB4034658

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10586.1045

Operating System: Windows 10586 build 1045

Identifier: KB4034660

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 10240.17533

Operating System: Windows 10240 build 17533

Identifier: KB4034668

Source: msrc

Type: Windows KB

Vendor: Microsoft

Product: Windows

Version: 15063.540

Operating System: Windows 15063 build 540

Identifier: KB4034674

Source: msrc

End of list