HTTP: Microsoft Edge CVE-2017-0066 Security Bypass

This signature detects attempts to exploit a known vulnerability against Microsoft Edge. A successful attack can lead to security bypass.

Extended Description

Microsoft Edge allows remote attackers to bypass the Same Origin Policy for HTML elements in other browser windows, aka "Microsoft Edge Security Feature Bypass Vulnerability." This vulnerability is different from those described in CVE-2017-0135 and CVE-2017-0140.

Affected Products

Microsoft edge

References

CVE: CVE-2017-0066

Short Name
HTTP:STC:IE:CVE-2017-0066-SB
Severity
Major
Recommended
True
Recommended Action
Drop
Category
HTTP
Keywords
Bypass CVE-2017-0066 Edge Microsoft Security
Release Date
03/14/2017
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3797
False Positive
Unknown
Vendors

Microsoft

CVSS Score

4.0

Found a potential security threat?