Lucene search

K
cvelistMicrosoftCVELIST:CVE-2023-36027
HistoryNov 10, 2023 - 7:49 p.m.

CVE-2023-36027 Microsoft Edge (Chromium-based) Elevation of Privilege Vulnerability

2023-11-1019:49:40
microsoft
www.cve.org
7
cve-2023-36027
microsoft edge
chromium-based
elevation of privilege
vulnerability

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L/E:U/RL:O/RC:C

EPSS

0.001

Percentile

27.8%

CNA Affected

[
  {
    "vendor": "Microsoft",
    "product": "Microsoft Edge (Chromium-based)",
    "cpes": [
      "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:*:*:*:*"
    ],
    "platforms": [
      "Unknown"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "119.0.2151.58",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  },
  {
    "vendor": "Microsoft",
    "product": "Microsoft Edge (Chromium-based) Extended Stable",
    "cpes": [
      "cpe:2.3:a:microsoft:edge_chromium:*:*:*:*:extended_stable:*:*:*"
    ],
    "platforms": [
      "Unknown"
    ],
    "versions": [
      {
        "version": "1.0.0",
        "lessThan": "118.0.2088.102",
        "versionType": "custom",
        "status": "affected"
      }
    ]
  }
]

CVSS3

7.1

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

CHANGED

Confidentiality Impact

LOW

Integrity Impact

LOW

Availability Impact

LOW

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:L/E:U/RL:O/RC:C

EPSS

0.001

Percentile

27.8%