Skip to content
Auto-CTI
Back to today
NEW HIGH A3

Microsoft Edge: Vulnerability enables code execution

A BSI Warn- und Informationsdienst (WID): Schwachstellen-Informationen (Bürger Cert) ·

Admiralty grading (A–F · 1–6)

Source reliability

  • A Completely reliable
  • B Usually reliable
  • C Fairly reliable
  • D Not usually reliable
  • E Unreliable
  • F Cannot be judged

Information credibility

  • 1 Confirmed
  • 2 Probably true
  • 3 Possibly true
  • 4 Doubtful
  • 5 Improbable
  • 6 Cannot be judged

NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.

Key insight

The BSI alert provides no specific CVE number and no version information , details are needed to determine affected versions and patch status.

Description

A vulnerability in Microsoft Edge enables remote code execution upon successful exploitation. The attack requires user interaction: the victim must visit an attacker-controlled website and perform specific actions. Successful exploitation can lead to information disclosure, modification of information, or server crashes. The BSI alert provides no CVE reference or specific version information, so verification against Microsoft security bulletins is necessary.

Risk score

20
cvss base
0.00
kev bonus
0.00
epss bonus
0.00
poc bonus
0.00
raw before weight
0.00
industry weight
1.21
freshness factor
0.50
exploitability factor
1.00
days old
22.00
vendor mismatch penalty
0.00

Path: operational

ESC