CVE-2016-3215: Microsoft Edge

Medium severity, CVSS 5.5. EPSS: 33.6% chance of exploitation in the next 30 days.

Microsoft Windows 8.1, Windows Server 2012 Gold and R2, Windows 10 1511, and Microsoft Edge allow remote attackers to obtain sensitive information from process memory via a crafted PDF document, aka "Windows PDF Information Disclosure Vulnerability," a different vulnerability than CVE-2016-3201.

Affected products

  • Microsoft Edge: affected versions not specified
  • Microsoft Windows 10: version 1511 only
  • Microsoft Windows 8.1: affected versions not specified
  • Microsoft Windows Server 2012: affected versions not specified; version r2 only

Published 2016-06-16. Last modified 2026-06-17.