Rapid7

vulnerability

Microsoft Windows: CVE-2018-0766: Microsoft Edge PDF Information Disclosure Vulnerability

Severity
4
CVSS
(AV:N/AC:M/Au:N/C:P/I:N/A:N)
Published
Jan 3, 2018
Added
Jan 4, 2018
Modified
Sep 5, 2025

Description

Microsoft Edge in Microsoft Windows 10 Gold, 1511, 1607, 1703, 1709, and Windows Server 2016 allows an attacker to obtain information to further compromise the user's system, due to how the Microsoft Edge PDF Reader handles objects in memory, aka "Microsoft Edge Information Disclosure Vulnerability".

Solutions

microsoft-windows-windows_10-1507-kb4056893microsoft-windows-windows_10-1511-kb4056888microsoft-windows-windows_10-1607-kb4056890microsoft-windows-windows_10-1703-kb4056891microsoft-windows-windows_10-1709-kb4056892microsoft-windows-windows_server_2016-1607-kb4056890
Title
Rapid7 Labs

2026 Global Threat Landscape Report

The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.