Lucene search

K
cvelistMicrosoftCVELIST:CVE-2023-36014
HistoryNov 09, 2023 - 11:28 p.m.

CVE-2023-36014 Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability

2023-11-0923:28:54
microsoft
www.cve.org
8
cve-2023-36014
microsoft edge
chromium-based
remote code execution
vulnerability

CVSS3

7.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L/E:U/RL:O/RC:C

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

37.0%

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Microsoft Edge (Chromium-based)",
    "cpes": [
      "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Unknown"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "119.0.2151.58",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

CVSS3

7.3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

LOW

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:L/E:U/RL:O/RC:C

AI Score

7.6

Confidence

High

EPSS

0.001

Percentile

37.0%