Microsoft Edge Security Update – 20 August 2023

Microsoft has released an updated Microsoft Edge stable version (116.0.1901.200) to fix multiple vulnerabilities in Microsoft Edge (Chromium-based).

The addressed vulnerabilities could allow the remote attacker to obtain sensitive information or gain elevated privileges on the affected system.

Sample of the addressed vulnerabilities:

Microsoft Edge Privilege Escalation Vulnerability (CVE-2023-36787):

  • CVSS: 8.8
  • Attack Vector: Network
  • Attack Complexity: Low
  • Privileges Required: None
  • User Interaction: Required
  • Consequences: Gain Privilege
Vulnerabilities
  • CVE-2023-36787
  • CVE-2023-38158
Mitigations

The enterprise should deploy this patch as soon as the testing phase is completed.

Microsoft Edge Security Advisory

References