Description
Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code, spoof user interface, gain privileges.
Below is a complete list of vulnerabilities:
- Implementation vulnerability in Web API Permission can be exploited to cause denial of service.
- Implementation vulnerability in Custom Tabs can be exploited to cause denial of service.
- Implementation vulnerability in Autofill can be exploited to cause denial of service.
- Validation of untrusted input vulnerability in Them can be exploited to cause denial of service.
- Out of bounds memory access vulnerability in Mojo can be exploited to cause denial of service.
- Use after free vulnerability in Tab Groups can be exploited to cause denial of service or execute arbitrary code.
- A spoofing vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to spoof user interface.
- Implementation vulnerability in Notifications can be exploited to cause denial of service.
- Implementation vulnerability in WebApp Installs can be exploited to cause denial of service.
- An elevation of privilege vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to gain privileges.
- Use after free vulnerability in WebRTC can be exploited to cause denial of service or execute arbitrary code.
- Implementation vulnerability in Picture In Picture can be exploited to cause denial of service.
- A spoofing vulnerability in Microsoft Edge for Android can be exploited remotely to spoof user interface.
Fiches de renseignement originales
- CVE-2023-3736
- CVE-2023-3738
- CVE-2023-3740
- CVE-2023-3732
- CVE-2023-3730
- CVE-2023-35392
- CVE-2023-3737
- CVE-2023-3733
- CVE-2023-38187
- CVE-2023-3728
- CVE-2023-3727
- CVE-2023-3734
- CVE-2023-38173
Exploitation
Public exploits exist for this vulnerability.
Malware exists for this vulnerability. Usually such malware is classified as Exploit. More details.
Produits associés
Liste CVE
- CVE-2023-3733 warning
- CVE-2023-3740 warning
- CVE-2023-3738 warning
- CVE-2023-3736 warning
- CVE-2023-3734 warning
- CVE-2023-3728 critical
- CVE-2023-3732 critical
- CVE-2023-3730 critical
- CVE-2023-3727 critical
- CVE-2023-3737 warning
- CVE-2023-3735 warning
- CVE-2023-35392 warning
- CVE-2023-38187 high
- CVE-2023-38173 warning
Liste KB
En savoir plus
Découvrez les statistiques de la propagation des vulnérabilités dans votre région statistics.securelist.com
Vous avez trouvé une inexactitude dans la description de cette vulnérabilité ? Faites-le nous savoir !