Описание
Multiple vulnerabilities were found in Microsoft Browser. Malicious users can exploit these vulnerabilities to cause denial of service, execute arbitrary code, bypass security restrictions, spoof user interface.
Below is a complete list of vulnerabilities:
- Type confusion vulnerability in V8 can be exploited to cause denial of service.
- Inappropriate implementation vulnerability in Autofill can be exploited to cause denial of service.
- Inappropriate implementation vulnerability in V8 can be exploited to cause denial of service.
- A remote code execution vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to execute arbitrary code.
- Inappropriate implementation vulnerability in UI can be exploited to cause denial of service.
- Insufficient validation data vulnerability in Omnibox can be exploited to bypass security restrictions.
- A spoofing vulnerability in Microsoft Edge (Chromium-based) can be exploited remotely to spoof user interface.
- Security vulnerability UI in Downloads area can be exploited to bypass security restrictions.
Первичный источник обнаружения
- CVE-2024-8904
CVE-2024-8908
CVE-2024-8905
CVE-2024-43489
CVE-2024-8909
CVE-2024-8907
CVE-2024-38221
CVE-2024-43496
CVE-2024-8906
Связанные продукты
Список CVE
- CVE-2024-8904 unknown
- CVE-2024-8907 unknown
- CVE-2024-8909 unknown
- CVE-2024-8908 unknown
- CVE-2024-8905 unknown
- CVE-2024-8906 unknown
- CVE-2024-43489 high
- CVE-2024-38221 warning
- CVE-2024-43496 high
Смотрите также
Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com
Нашли неточность в описании этой уязвимости? Дайте нам знать!