Microsoft Edge: Vulnerability enables code execution
A BSI Warn- und Informationsdienst (WID): Schwachstellen-Informationen (Bürger Cert) ·
Admiralty grading (A–F · 1–6)
Source reliability
- A Completely reliable
- B Usually reliable
- C Fairly reliable
- D Not usually reliable
- E Unreliable
- F Cannot be judged
Information credibility
- 1 Confirmed
- 2 Probably true
- 3 Possibly true
- 4 Doubtful
- 5 Improbable
- 6 Cannot be judged
NATO Admiralty (AJP-2.1) grades confidence, independent of the risk score. Cross-source corroboration isn't tracked for non-CVE news, so single-source items are capped at a lower credibility number; a low number does not imply low quality.
Key insight
The BSI alert provides no specific CVE number and no version information , details are needed to determine affected versions and patch status.
Description
A vulnerability in Microsoft Edge enables remote code execution upon successful exploitation. The attack requires user interaction: the victim must visit an attacker-controlled website and perform specific actions. Successful exploitation can lead to information disclosure, modification of information, or server crashes. The BSI alert provides no CVE reference or specific version information, so verification against Microsoft security bulletins is necessary.
Risk score
- cvss base
- 0.00
- kev bonus
- 0.00
- epss bonus
- 0.00
- poc bonus
- 0.00
- raw before weight
- 0.00
- industry weight
- 1.21
- freshness factor
- 0.50
- exploitability factor
- 1.00
- days old
- 22.00
- vendor mismatch penalty
- 0.00
Path: operational