CVE-2018-0803
CVE-2018-0803
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 3.7%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
04 Jan 2018Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to access information from one domain and inject it into another domain, due to how Microsoft Edge enforces cross-domain policies, aka "Microsoft Edge Elevation of Privilege Vulnerability".
Affected products
Microsoft Corporation · Microsoft EdgeWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →