CVE Database
/

CVE-2017-8599

Back to search

CVE-2017-8599

Published: Jul 11, 2017

Modified: Sep 17, 2024

PUBLISHED

Description

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an attacker to trick a user into loading a page with malicious content when the Edge Content Security Policy (CSP) fails to properly validate certain specially crafted documents, aka "Microsoft Edge Security Feature Bypass Vulnerability".

VendorProductVersions

Microsoft Corporation

Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016

affected
Edge CSP

References

1038858
vdb-entry
x_refsource_SECTRACK
99393
vdb-entry
x_refsource_BID

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now