Vulnerability Name:

CVE-2015-6168 (CCN-108287)

Assigned:2015-12-08
Published:2015-12-08
Updated:2018-10-12
Summary:Microsoft Edge allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted web site, aka "Microsoft Edge Memory Corruption Vulnerability," a different vulnerability than CVE-2015-6153.
CVSS v3 Severity:9.6 Critical (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H)
8.3 High (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Changed
Impact Metrics:Confidentiality (C): High
Integrity (I): High
Availibility (A): High
CVSS v2 Severity:9.3 High (CVSS v2 Vector: AV:N/AC:M/Au:N/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
9.0 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:S/C:C/I:C/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): Complete
Integrity (I): Complete
Availibility (A): Complete
Vulnerability Type:CWE-119
Vulnerability Consequences:Gain Access
References:Source: MISC
Type: Exploit, Third Party Advisory
http://blog.skylined.nl/20161201001.html

Source: MITRE
Type: CNA
CVE-2015-6168

Source: FULLDISC
Type: Mailing List, Third Party Advisory
20161201 CVE-2015-6168: MS Edge CMarkup::EnsureDeleteCFState use-after-free details

Source: CCN
Type: Microsoft Security Bulletin MS15-125
Cumulative Security Update for Microsoft Edge (3116184)

Source: CCN
Type: Microsoft Security Bulletin MS16-002
Cumulative Security Update for Microsoft Edge (3124904)

Source: SECTRACK
Type: UNKNOWN
1034316

Source: MISC
Type: Third Party Advisory, VDB Entry
http://www.zerodayinitiative.com/advisories/ZDI-15-583

Source: MS
Type: UNKNOWN
MS15-125

Source: XF
Type: UNKNOWN
ms-edge-cve20156168-code-exec(108287)

Source: CCN
Type: Packet Storm Security [12-02-2016]
MS Edge CMarkup::EnsureDeleteCFState Use-After-Free

Source: EXPLOIT-DB
Type: EXPLOIT
Offensive Security Exploit Database [12-06-2016]

Source: EXPLOIT-DB
Type: Exploit, Third Party Advisory, VDB Entry
40878

Vulnerable Configuration:Configuration 1:
  • cpe:/a:microsoft:edge:-:*:*:*:*:*:*:*

  • Configuration CCN 1:
  • cpe:/a:microsoft:edge:*:*:*:*:*:*:*:*

  • * Denotes that component is vulnerable
    BACK
    microsoft edge -
    microsoft edge *