CVE-2017-11827: Microsoft Edge

High severity, CVSS 7.5. EPSS: 7.6% chance of exploitation in the next 30 days.

Internet Explorer in Microsoft Windows 7 SP1, Windows Server 2008 R2 SP1, Windows 8.1 and Windows RT 8.1, Windows Server 2012 and R2, and Microsoft Edge and Internet Explorer in Windows 10 Gold, 1511, 1607, 1703, 1709, Windows Server 2016 and Windows Server, version 1709 allows an attacker to gain the same user rights as the current user, due to how Microsoft browsers handle objects in memory, aka "Microsoft Browser Memory Corruption Vulnerability".

Affected products

  • Microsoft Edge: affected versions not specified
  • Microsoft Internet Explorer: version 11 only; version 10 only

Published 2017-11-15. Last modified 2026-06-17.