Lucene search

K
cveMicrosoftCVE-2024-21336
HistoryJan 26, 2024 - 6:15 p.m.

CVE-2024-21336

2024-01-2618:15:12
CWE-357
microsoft
web.nvd.nist.gov
107
cve
2024
21336
microsoft edge
chromium
spoofing
vulnerability
nvd

CVSS3

2.5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

3.8

Confidence

High

EPSS

0.001

Percentile

23.1%

Microsoft Edge (Chromium-based) Spoofing Vulnerability

Affected configurations

Nvd
Vulners
Node
microsoftedge_chromiumRange<121.0.2277.83
VendorProductVersionCPE
microsoftedge_chromium*cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Microsoft Edge (Chromium-based)",
    "cpes": [
      "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Unknown"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "121.0.2277.83",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

CVSS3

2.5

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:L/AC:H/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

3.8

Confidence

High

EPSS

0.001

Percentile

23.1%