CVE detail
CVE-2018-0771
Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows a security feature bypass, due to how Edge handles different-origin requests, aka "Microsoft Edge Security Feature Bypass".
Buzz score
Why this CVE is surfacing
This all-time snapshot uses the same composite formula as Trending across a 30-year evidence window, rather than a current rolling window.
Buzz score components · mention 11.0 · diversity 6.5 · KEV 0.0 · OTX 0.0 · PoC 0.0
Why it matters now
Mention timeline
- Total mentions
- 0
- within the 30d window
- Peak daily
- 0
- highest bucket
Evidence
Source links by recency
2 source links · newest first
Microsoft Patch Tuesday for February 2018 addressed a total of 50 vulnerabilities in affecting Windows operating system, Microsoft Office, web browsers and other products of the tech giant. Fourteen issues are listed as critical, 34 are rated as important, and only two of them are rated as moderate in severity. The list of critical vulnerability includes […]
newssecurityaffairs.comFeb 14, 2018, 1:40 PMMicrosoft’s Patch Tuesday updates for February 2018 address 50 vulnerabilities in Windows, Office and the company’s web browsers, but this time the list does not appear to include any zero-day flaws.
newswww.securityweek.comFeb 13, 2018, 8:30 PM
Exploit code
Public exploit repository references
Public PoC repositories are third-party, potentially unsafe artifacts. Treat their code as untrusted and use it only on authorized systems in an isolated, least-privilege environment. cvebuzz does not execute the code or verify that an exploit works.
0 repository references · best confidence N/A · max 0 stars
Related records
Similar CVEs
6 related CVEs with shared weakness or product evidence
- CVE-2021-1705CVSS 4.2 · Medium
Microsoft Edge (HTML-based) Memory Corruption Vulnerability
1 mention - CVE-2020-17058CVSS 7.5 · High
Microsoft Browser Memory Corruption Vulnerability
- CVE-2020-17054CVSS 4.2 · Medium
Chakra Scripting Engine Memory Corruption Vulnerability
- CVE-2020-17052CVSS 7.5 · High
Scripting Engine Memory Corruption Vulnerability
- CVE-2020-17048CVSS 4.2 · Medium
Chakra Scripting Engine Memory Corruption Vulnerability
- CVE-2020-1180CVSS 4.2 · Medium
<p>A remote code execution vulnerability exists in the way that the ChakraCore scripting engine handles objects in memory. The vulnerability could corrupt memory in such a way tha…