QID 375927
Date Published: 2021-10-04
QID 375927: Microsoft Edge Based on Chromium Prior to 94.0.992.38 Multiple Vulnerabilities
CVE-2021-37974 Microsoft Edge (Chromium-based)
CVE-2021-37975 Microsoft Edge (Chromium-based)
CVE-2021-37976 Microsoft Edge (Chromium-based)
Affected Versions:
Microsoft Edge Based On Chromium versions before 94.0.992.38
QID Detection Logic: (authenticated)
Operating System: Windows
The install path is checked via registry "HKLM\SOFTWARE\Clients\StartMenuInternet\Microsoft Edge\shell\open\command". The version is checked via file msedge.exe.
Operating System: MacOS
The QID checks for the version of Microsoft Edge Based On Chromium app.
Successful exploitation of these vulnerabilities may allow an attacker to execute arbitrary code on the target system.
Solution
Customers are advised to upgrade to version 94.0.992.38 or later
Vendor References
- Edge (chromium based) 94.0.992.38 -
docs.microsoft.com/en-us/deployedge/microsoft-edge-relnote-stable-channel#version-94099238-october-1
CVEs related to QID 375927
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| Edge (chromium based) 94.0.992.38 |
|