Microsoft browsers on when Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1, Windows RT 8.1, and Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow a security feature bypass vulnerability when they improperly handle redirect requests, aka "Microsoft Browser Security Feature Bypass".
2017-07-11T21:29:01.810
2025-04-20T01:37:25.860
Deferred
CVSSv3.0: 6.5 (MEDIUM)
AV:N/AC:M/Au:N/C:P/I:N/A:N
8.6
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Operating System | microsoft | windows_10 | - | Yes |
Operating System | microsoft | windows_10 | 1511 | Yes |
Operating System | microsoft | windows_10 | 1607 | Yes |
Operating System | microsoft | windows_10 | 1703 | Yes |
Operating System | microsoft | windows_7 | * | Yes |
Operating System | microsoft | windows_8.1 | * | Yes |
Operating System | microsoft | windows_rt_8.1 | * | Yes |
Operating System | microsoft | windows_server_2008 | * | Yes |
Operating System | microsoft | windows_server_2008 | r2 | Yes |
Operating System | microsoft | windows_server_2012 | - | Yes |
Operating System | microsoft | windows_server_2012 | r2 | Yes |
Operating System | microsoft | windows_server_2016 | * | Yes |
Application | microsoft | edge | * | Yes |
Application | microsoft | internet_explorer | 9 | Yes |
Application | microsoft | internet_explorer | 10 | Yes |
Application | microsoft | internet_explorer | 11 | Yes |
Operating System | microsoft | windows_10 | - | No |
Operating System | microsoft | windows_10 | 1511 | No |
Operating System | microsoft | windows_10 | 1607 | No |
Operating System | microsoft | windows_10 | 1703 | No |
Operating System | microsoft | windows_7 | * | No |
Operating System | microsoft | windows_8.1 | * | No |
Operating System | microsoft | windows_rt_8.1 | * | No |
Operating System | microsoft | windows_server_2008 | * | No |
Operating System | microsoft | windows_server_2008 | r2 | No |
Operating System | microsoft | windows_server_2012 | - | No |
Operating System | microsoft | windows_server_2012 | r2 | No |
Operating System | microsoft | windows_server_2016 | * | No |