Netskope Threat Labs

BROWSER-IE Microsoft Edge null pointer dereference attempt

IPS-CFWIPS-SWG

1 SID: 45160

First seen
July 2024
Last seen
October 2026

Detects web content that exploits CVE-2017-11918, a null pointer dereference in Microsoft Edge's scripting engine that can allow code execution. The rule matches the self-referencing array element that public exploits use to reach the uninitialized object state.