CVE-2017-8644
MEDIUMMicrosoft Edge - Information Disclosure
Title source: ruleDescription
Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows an attacker to disclose information due to the way that Microsoft Edge handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability". This CVE ID is unique from CVE-2017-8652 and CVE-2017-8662.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Google Security Research · htmldoswindows
https://www.exploit-db.com/exploits/42459
References (4)
Scores
CVSS v3
4.3
EPSS
0.4112
EPSS Percentile
97.3%
Attack Vector
NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Details
CWE
CWE-200
Status
published
Products (2)
microsoft/edge
Microsoft Corporation/Microsoft Edge
< Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016.
Published
Aug 08, 2017
Tracked Since
Feb 18, 2026