CVE-2017-11844

Description

Microsoft Edge in Microsoft Windows 10 1703, 1709 and Windows Server, version 1709 allows an attacker to obtain information to further compromise the users system, due to how Microsoft Edge handles objects in memory, aka Microsoft Edge Information Disclosure Vulnerability. This CVE ID is unique from CVE-2017-11803 and CVE-2017-11833.

Risk Information

Base Score
4.4
MODERATE
Vector
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:N/E:P/RL:O/RC:C
EPSS Score
Exploitation Probability
12.825

Associated Vulnerability

VulnerabilityOS Platform
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1703 for x64-based Systems (KB4048954) - CumulativeWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1703 for x64-based Systems (KB4048954) - DeltaWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1703 for x86-based Systems (KB4048954) - CumulativeWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1703 for x86-based Systems (KB4048954) - DeltaWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4048955) - CumulativeWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1709 for x64-based Systems (KB4048955) - DeltaWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4048955) - CumulativeWindows
Scripting Engine Information Disclosure Vulnerability for Windows 10 Version 1709 for x86-based Systems (KB4048955) - DeltaWindows

Patch Details

Click to see the patches provided by ManageEngine for this CVE
Patch IDPatch Description
PATCH-23448Cumulative Update for Windows 10 Version 1709 for x64-based Systems (KB4048955)
PATCH-23483Delta Update for Windows 10 Version 1709 for x64-based Systems (KB4048955)
PATCH-23447Cumulative Update for Windows 10 Version 1709 for x86-based Systems (KB4048955)
PATCH-23482Delta Update for Windows 10 Version 1709 for x86-based Systems (KB4048955)

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234