CVE-2017-0208
medium · 4.3An information disclosure vulnerability exists in Microsoft Edge when the Chakra scripting engine does not properly handle objects in memory. An attacker who successfully exploited the vulnerability could obtain information to further compromise the user's system, a.k.a. "Scripting Engine Information Disclosure Vulnerability."
4.3
CVSS
15.3%
EPSS (exploit prob.)
97th
EPSS percentile
2017-04-12
Published
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N
Weaknesses
CWE-200
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | edge | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/97460
- http://www.securitytracker.com/id/1038234
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0208
- http://www.securityfocus.com/bid/97460
- http://www.securitytracker.com/id/1038234
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0208
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-0208