QID 375463

Date Published: 2021-04-15

QID 375463: Microsoft Edge Based On Chromium Prior to 90.0.818.41 Multiple Vulnerabilities

Google Chrome is a web browser for multiple platforms developed by Google.

Affected Versions:
Microsoft Edge Based On Chromium Prior to 90.0.818.41

QID Detection Logic: (authenticated)
Operating System: Windows
The install path is checked via registry "HKLM\SOFTWARE\Clients\StartMenuInternet\Microsoft Edge\shell\open\command". The version is checked via file msedge.exe.

QID Detection Logic: (authenticated)
Operating System: MacOS
The QID checks for vulnerable version of Microsoft Edge from installed application list.

Successful exploitation of this vulnerability affects confidentiality, integrity and availability.

  • CVSS V3 rated as Critical - 8.8 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Customers are advised to upgrade to version
    For further details refer to 90.0.818.41 or later

    CVEs related to QID 375463

    Software Advisories
    Advisory ID Software Component Link
    Microsoft Edge URL Logo docs.microsoft.com/en-us/deployedge/microsoft-edge-relnotes-security#april-16-2021