CVE-2019-0643Sensitive Information Exposure in Microsoft Edge

4 documents4 sources
Severity
4.3MEDIUMNVD
EPSS
12.9%
top 5.93%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedMar 5
Latest updateMay 13

Description

An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka 'Microsoft Edge Information Disclosure Vulnerability'.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages1 packages

CVEListV5microsoft/microsoft_edge4 versions+3

Patches

🔴Vulnerability Details

2
GHSA
GHSA-pmjq-g8x2-ph7x: An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka 'Microsoft Edge Information Disclosur2022-05-13
CVEList
CVE-2019-0643: An information disclosure vulnerability exists in the way that Microsoft Edge handles cross-origin requests, aka 'Microsoft Edge Information Disclosur2019-03-06

📋Vendor Advisories

1
Microsoft
Microsoft Edge Information Disclosure Vulnerability2019-02-12
CVE-2019-0643 — Sensitive Information Exposure | cvebase