Rewterz
Rewterz Threat Alert – Antlion APT Group – Active IOCs
February 4, 2022
Rewterz
Rewterz Threat Advisory – CVE-2022-0492 – Linux Kernel Vulnerability
February 7, 2022

Rewterz Threat Advisory – Multiple Microsoft Edge (Chromium-based) Vulnerabilities

Severity

High

Analysis Summary

CVE-2022-23263 

Microsoft Edge (Chromium-based) could allow a remote attacker to gain elevated privileges on the system. By persuading a victim to open a specially-crafted content, an attacker could exploit this vulnerability to execute arbitrary code with higher privileges.

CVE-2022-23261 

Microsoft Edge (Chromium-based) could allow a remote attacker to bypass security restrictions. An attacker could exploit this vulnerability to cause impact on integrity.

Impact

  • Privilege Escalation
  • Security Bypass
  • Code Execution

Indicators of Compromise

CVE

  • CVE-2022-23263
  • CVE-2022-23261

Affected Vendors

Microsoft

Affected Products

  • Microsoft Edge (Chromium-based) 98.0

Remediation

Use Microsoft Automatic Update to apply the appropriate patch for your system, or the Microsoft Security Update Guide to search for available patches.

CVE-2022-23263

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2022-23263

CVE-2022-23261

https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2022-23261