Severity
Medium
Analysis Summary
CVE-2023-36787 CVSS:8.8
Microsoft Edge (Chromium-based) could allow a remote attacker to gain elevated privileges on the system, caused by an unspecified flaw. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to gain elevated privileges.
CVE-2023-38158 CVSS:3.1
Microsoft Edge (Chromium-based) could allow a remote attacker to obtain sensitive information. By persuading a victim to visit a specially crafted Web site, an attacker could exploit this vulnerability to obtain sensitive information.
Impact
- Privilege Escalation
- Information Disclosure
Indicators Of Compromise
CVE
- CVE-2023-36787
- CVE-2023-38158
Affected Vendors
Microsoft
Affected Products
- Microsoft Edge (Chromium-based)
Remediation
Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.