CVE-2017-0224 is a remote code execution vulnerability affecting Microsoft Edge, stemming from how its JavaScript engine handles objects in memory. An attacker could exploit this "Scripting Engine Memory Corruption Vulnerability" to execute arbitrary code on a vulnerable system. The vulnerability has a high severity CVSS score of 7.5, indicating a network-based attack with high impact on confidentiality, integrity, and availability, though it requires user interaction and has high attack complexity. Currently, there is no evidence of active exploitation, and no public exploit code or significant community discussion has been identified.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
All Versions ImpactedCPE matchmatch criteria | cpe:2.3:a:microsoft:edge:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.0
CVSS:3.0/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
No social media mentions found for this CVE.
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.4 Bluesky, 0.2 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.6 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.