CVE-2019-0762Incorrect Authorization in Microsoft Internet Explorer 11

Severity
4.3MEDIUMNVD
EPSS
5.9%
top 9.34%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedApr 9
Latest updateMay 13

Description

A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins, aka 'Microsoft Browsers Security Feature Bypass Vulnerability'.

CVSS vector

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:NExploitability: 2.8 | Impact: 1.4

Affected Packages3 packages

CVEListV5microsoft/microsoft_edgeWindows 10 Version 1709 for 32-bit Systems
CVEListV5microsoft/internet_explorer_1115 versions+14

Patches

🔴Vulnerability Details

2
GHSA
GHSA-f7p4-692g-f4w7: A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins, aka 'Microsoft Browsers Securi2022-05-13
CVEList
CVE-2019-0762: A security feature bypass vulnerability exists when Microsoft browsers improperly handle requests of different origins, aka 'Microsoft Browsers Securi2019-04-09

📋Vendor Advisories

1
Microsoft
Microsoft Browsers Security Feature Bypass Vulnerability2019-03-12

🕵️Threat Intelligence

1
Talos
Vulnerability Spotlight: Denial of service in VMWare Workstation 152019-04-15
CVE-2019-0762 — Incorrect Authorization in Microsoft | cvebase