CVE-2017-8644
CVE-2017-8644
Vexday Risk Score
28Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 15.1%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
08 Aug 2017Published on NVD
16 Aug 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8652 and CVE-2017-8662.
Affected products
Microsoft Corporation · Microsoft Edgepublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/42459/unverifiedexploitdbwww.exploit-db.com/exploits/42459unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →