CVE-2024-38083
CVSS 3.1 Score 4.3 of 10 (medium)
Details
Summary
CVE-2024-38083 is a newly disclosed spoofing vulnerability affecting Microsoft Edge browsers based on Chromium. Cybercriminals can manipulate the browser's display of webpage addresses, potentially tricking users into believing they are on secure sites when they are not. This issue poses a significant risk for phishing attacks, as users may unknowingly enter sensitive information on fraudulent pages. Microsoft is currently working on a patch to address this vulnerability. Until a fix is released, users are advised to exercise caution when navigating the web and verify the authenticity of websites before entering personal information.
Prevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.
Affected Products
- Microsoft Edge
Affected Vendors
- Microsoft