Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to trick a user into loading a page containing malicious content, due to how the Edge Content Security Policy (CSP) validates documents, aka "Microsoft Edge Security Feature Bypass Vulnerability". This CVE ID is unique from CVE-2017-11872 and CVE-2017-11874.
References
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: microsoft

Published: 2017-11-14T00:00:00

Updated: 2017-11-15T10:57:01

Reserved: 2017-07-31T00:00:00


Link: CVE-2017-11863

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2017-11-15T03:29:01.450

Modified: 2017-12-01T18:14:12.733


Link: CVE-2017-11863

JSON object: View

cve-icon Redhat Information

No data.

CWE