Medium severity6.5NVD Advisory· Published Nov 15, 2017· Updated Jun 17, 2026
CVE-2017-11872
CVE-2017-11872
Description
Microsoft Edge in Microsoft Windows 10 1607, 1703, and Windows Server 2016 allows an attacker to force the browser to send data that would otherwise be restricted to a destination website of the attacker's choice, due to how Microsoft Edge handles redirect requests, aka "Microsoft Edge Security Feature Bypass Vulnerability". This CVE ID is unique from CVE-2017-11863 and CVE-2017-11874.
Affected products
4- Microsoft Corporation/Microsoft Edgev5Range: Microsoft Windows 10 1607, 1703, and Windows Server 2016.
Patches
Vulnerability mechanics
References
3- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11872nvdPatchVendor Advisory
- www.securityfocus.com/bid/101749nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1039801nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.