Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2023-33145Sensitive Information Exposure in Microsoft Edge

5 documents5 sources
Severity
6.5MEDIUMNVD
EPSS
7.4%
top 8.22%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedJun 14
Latest updateJul 6

Description

Microsoft Edge (Chromium-based) Information Disclosure Vulnerability

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:NExploitability: 2.8 | Impact: 3.6

Affected Packages2 packages

NVDmicrosoft/edge_chromium< 114.0.1823.51
CVEListV5microsoft/microsoft_edge1.0.0114.0.1823.51

Patches

🔴Vulnerability Details

2
GHSA
GHSA-3m5x-qv26-v6mr: Microsoft Edge (Chromium-based) Information Disclosure Vulnerability2023-06-14
CVEList
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability2023-06-13

💥Exploits & PoCs

1
Exploit-DB
Microsoft Edge 114.0.1823.67 (64-bit) - Information Disclosure2023-07-06

📋Vendor Advisories

1
Microsoft
Microsoft Edge (Chromium-based) Information Disclosure Vulnerability2023-06-13
CVE-2023-33145 — Sensitive Information Exposure | cvebase