CVE-2019-1220

MEDIUM

Microsoft Browser - Auth Bypass

Title source: llm
STIX 2.1

Description

A security feature bypass vulnerability exists when Microsoft Browsers fail to validate the correct Security Zone of requests for specific URLs, aka 'Microsoft Browser Security Feature Bypass Vulnerability'.

Scores

CVSS v3 4.3
EPSS 0.0593
EPSS Percentile 90.7%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N

Details

CWE
CWE-425
Status published
Products (4)
microsoft/edge
microsoft/internet_explorer 9
microsoft/internet_explorer 10
microsoft/internet_explorer 11
Published Sep 11, 2019
Tracked Since Feb 18, 2026