CISA Known Exploited Vulnerability

CVE-2017-0037

Microsoft · Edge and Internet Explorer

Microsoft Edge and Internet Explorer Type Confusion Vulnerability

Date added
BOD 22-01 due date
CWE CWE-704
Ransomware Unknown

CISA description

Microsoft Edge and Internet Explorer have a type confusion vulnerability in mshtml.dll, which allows remote code execution.

Required action

Apply updates per vendor instructions.