First published: Thu Nov 10 2016(Updated: )
The scripting engines in Microsoft Internet Explorer 9 through 11 and Microsoft Edge allow remote attackers to determine the existence of local files via unspecified vectors, aka "Microsoft Browser Information Disclosure Vulnerability."
Credit: secure@microsoft.com
Affected Software | Affected Version | How to fix |
---|---|---|
Microsoft Edge | ||
Internet Explorer | =9 | |
Internet Explorer | =10 | |
Internet Explorer | =11 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2016-7227 has a severity rating that can be classified as critical due to its potential for information disclosure.
To fix CVE-2016-7227, it is recommended to update Microsoft Internet Explorer and Microsoft Edge to the latest versions provided by Microsoft.
CVE-2016-7227 affects Internet Explorer versions 9, 10, and 11.
CVE-2016-7227 can be exploited by attackers to determine the existence of local files on the user's system via specially crafted web content.
Yes, CVE-2016-7227 affects Microsoft Edge in addition to older versions of Internet Explorer.