CVE-2017-8652
CVE-2017-8652
Vexday Risk Score
28Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 22.9%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
08 Aug 2017Published on NVD
10 Aug 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8644 and CVE-2017-8662.
Affected products
Microsoft Corporation · Microsoft Edgepublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/42445/unverifiedexploitdbwww.exploit-db.com/exploits/42445unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →