60
CVE-2018-8567
—CVSS 3.0
5.4 medium
EPSS
3%p87
Published
()
Modified
Description
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain, aka "Microsoft Edge Elevation of Privilege Vulnerability." This affects Microsoft Edge.
- Vendors
- microsoft
- Products
- edge
- Vector
- CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N