4.3
CVE-2025-21404
- EPSS 0.1%
- Published 06.02.2025 23:15:09
- Last modified 11.02.2025 22:00:00
- Source secure@microsoft.com
- Teams watchlist Login
- Open Login
Microsoft Edge (Chromium-based) Spoofing Vulnerability
Data is provided by the National Vulnerability Database (NVD)
Microsoft ≫ Edge Chromium Version < 133.0.3065.51
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 0.1% | 0.289 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
secure@microsoft.com | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
|
CWE-449 The UI Performs the Wrong Action
The UI performs the wrong action with respect to the user's request.
CWE-451 User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.