Intrusion Prevention

MS.Edge.WebKitDirecory.Read.Local.File.Information.Disclosure

Description

This indicates an attack attempt to exploit an Information Disclosure vulnerability in Microsoft Edge.
The vulnerability is due to an error when the vulnerable software attempts to handles maliciously crafted web page. An attacker can exploit this by tricking a user into visiting a malicious webpage and gain access to sensitive information within the context of the application.

Affected Products

Microsoft Edge on Windows 10
Microsoft Edge on Windows Server 2016

Impact

Information Disclosure: Remote attackers can gain sensitive information from vulnerable systems

Recommended Actions

Apply the most recent upgrade or patch from the vendor.
http://technet.microsoft.com/security/bulletin/MS16-129

CVE References

CVE-2016-7204