Attack (Attack ID:324165)

Release Date2016/07/12

Attack NameWEB-CLIENT Microsoft Browser Spoofing Vulnerability (CVE-2016-3274)

Severity

BUG ID

CVE ID

 

Description

A vulnerability was discovered within EDGE. It allows pages opened by clicking on 'noreferrer' hyperlinks to modify the parent window, which should have been impossible according to the HTML specifications.
Impact:Remote code execution
Affected System:Windows
Additional References:CVE-2016-3274; MS16-084

 

Solution

Update vendor's patch.