CVE-2016-3203: Microsoft Edge

High severity, CVSS 7.8. EPSS: 33.3% chance of exploitation in the next 30 days.

Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 Gold and 1511, and Microsoft Edge allow remote attackers to execute arbitrary code via a crafted PDF document, aka "Windows PDF Remote Code Execution Vulnerability."

Affected products

  • Microsoft Edge: any version
  • Microsoft Windows 10: affected versions not specified; version 1511 only
  • Microsoft Windows 8.1: any version
  • Microsoft Windows Server 2012: affected versions not specified; version r2 only

Published 2016-06-16. Last modified 2026-06-17.