High Threat Security Alert (A23-10-01): Multiple Vulnerabilities in Microsoft Edge
03 October 2023
Microsoft released a security update to address multiple vulnerabilities in Microsoft Edge. A remote attacker could entice a user to open a web page with specially crafted content on a vulnerable browser to exploit the vulnerabilities.
Reports indicate that the arbitrary code execution vulnerability (CVE-2023-5217) is being exploited in the wild. System administrators and users are advised to take immediate action to patch your affected systems to mitigate the elevated risk of cyber attacks.
Microsoft Edge prior to version 117.0.2045.47
Successful exploitation of the vulnerabilities could lead to arbitrary code execution on an affected system.
System administrators and users of affected systems should update Microsoft Edge to version 117.0.2045.47 or later to address the issue. The details of the security update can be found at: https://learn.microsoft.com/en-us/DeployEdge/microsoft-edge-relnotes-security#september-29-2023