Impact
Microsoft Edge (Chromium-based) for Android is affected by a spoofing vulnerability that may allow an attacker to present a false identity or representation, enabling phishing or similar attacks. The description does not detail the exact mechanism or exploit capability, so the precise impact on confidentiality, integrity or availability remains unclear.
Affected Systems
The vulnerability impacts Microsoft Edge for Android, including both the standard and Chromium-based editions. No specific affected versions are listed in the available data.
Risk and Exploitability
The CVSS score of 5 indicates moderate severity. EPSS is reported to be less than 1%, suggesting a low likelihood of exploitation, and the vulnerability is not currently listed in the CISA KEV catalog. Based on the information provided, it is inferred that the attack vector would require the attacker to influence the user’s perception of the browser or its displayed content, potentially via a malicious app or compromised website. No specific exploitation prerequisites are described in the available data.
OpenCVE Enrichment