First published: Wed Sep 14 2016(Updated: )
Microsoft Internet Explorer 11 and Microsoft Edge mishandle cross-origin requests, which allows remote attackers to obtain sensitive information via a crafted web site, aka "Microsoft Browser Information Disclosure Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Edge Beta | ||
Internet Explorer | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-3291 has a medium severity rating as it involves information disclosure vulnerabilities.
To fix CVE-2016-3291, update Microsoft Internet Explorer and Microsoft Edge to the latest versions.
CVE-2016-3291 can be exploited through crafted web sites that handle cross-origin requests poorly.
CVE-2016-3291 affects Microsoft Internet Explorer 11 and Microsoft Edge.
CVE-2016-3291 could allow attackers to obtain sensitive information from users via affected browsers.