CVE-2017-8504
CVE-2017-8504
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 5.3%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Jun 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Edge in Windows 10 1607 and 1703, and Windows Server 2016 allows an attacker to read the URL of a cross-origin request when the Microsoft Edge Fetch API incorrectly handles a filtered response type, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8498.
Affected products
Microsoft Corporation · Microsoft EdgeWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →