RULE(RULE ID:317472)

Rule General Information
Release Date: 2017-05-25
Rule Name: WEB-CLIENT Microsoft Edge Frame Elements Same Origin Policy Bypass Vulnerability (CVE-2017-0066)
Severity:
CVE ID:
Rule Protection Details
Description: Microsoft Edge allows remote attackers to bypass the Same Origin Policy for HTML elements in other browser windows, aka "Microsoft Edge Security Feature Bypass Vulnerability."
Impact: An attacker can take advantage of the vulnerability to bypass the security policy implemented by the software administrator, and perform unauthorized actions to the target system.
Affected OS: Windows
Reference: SecurityFocusBID:96655
SecurityTrackerID:1038006
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0066
Solutions
More advisories have been published on the website, please visit for more suggestions:
https://technet.microsoft.com/en-us/library/security/MS17-007