Vulnerabilities > Microsoft > Edge > Medium

DATE CVE VULNERABILITY TITLE RISK
2019-08-14 CVE-2019-1030 Information Exposure vulnerability in Microsoft Edge
An information disclosure vulnerability exists when Microsoft Edge based on Edge HTML improperly handles objects in memory.
network
low complexity
microsoft CWE-200
4.3
2019-06-12 CVE-2019-1081 Information Exposure vulnerability in Microsoft Edge and Internet Explorer
An information disclosure vulnerability exists when affected Microsoft browsers improperly handle objects in memory, aka 'Microsoft Browser Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-06-12 CVE-2019-1054 Unspecified vulnerability in Microsoft Edge
A security feature bypass vulnerability exists in Edge that allows for bypassing Mark of the Web Tagging (MOTW), aka 'Microsoft Edge Security Feature Bypass Vulnerability'.
network
high complexity
microsoft
5.0
2019-06-12 CVE-2019-1023 Information Exposure vulnerability in Microsoft Chakracore and Edge
An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting Engine Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-06-12 CVE-2019-0990 Information Exposure vulnerability in Microsoft Chakracore and Edge
An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting Engine Information Disclosure Vulnerability'.
network
low complexity
microsoft CWE-200
6.5
2019-04-09 CVE-2019-0833 Unspecified vulnerability in Microsoft Edge
An information disclosure vulnerability exists when Microsoft Edge improperly handles objects in memory, aka 'Microsoft Edge Information Disclosure Vulnerability'.
network
low complexity
microsoft
6.5
2019-04-09 CVE-2019-0764 Argument Injection or Modification vulnerability in Microsoft Edge and Internet Explorer
A tampering vulnerability exists when Microsoft browsers do not properly validate input under specific conditions, aka 'Microsoft Browsers Tampering Vulnerability'.
network
low complexity
microsoft CWE-88
6.5
2019-04-09 CVE-2019-0762 Incorrect Authorization vulnerability in Microsoft Edge and Internet Explorer
A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins, aka 'Microsoft Browsers Security Feature Bypass Vulnerability'.
network
low complexity
microsoft CWE-863
4.3
2019-04-09 CVE-2019-0746 Unspecified vulnerability in Microsoft Chakracore, Edge and Internet Explorer
An information disclosure vulnerability exists when the scripting engine does not properly handle objects in memory in Microsoft Edge, aka 'Scripting Engine Information Disclosure Vulnerability'.
network
low complexity
microsoft
6.5
2019-04-09 CVE-2019-0678 Incorrect Authorization vulnerability in Microsoft Edge
An elevation of privilege vulnerability exists when Microsoft Edge does not properly enforce cross-domain policies, which could allow an attacker to access information from one domain and inject it into another domain.In a web-based attack scenario, an attacker could host a website that is used to attempt to exploit the vulnerability, aka 'Microsoft Edge Elevation of Privilege Vulnerability'.
network
high complexity
microsoft CWE-863
6.8