CVE-2017-0211
medium · 5.5An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability."
5.5
CVSS
14.0%
EPSS (exploit prob.)
96th
EPSS percentile
2017-04-12
Published
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
Weaknesses
CWE-610
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | windows_10 | all versions |
| microsoft | windows_10 | 1511 |
| microsoft | windows_10 | 1607 |
| microsoft | windows_10 | 1703 |
| microsoft | windows_8.1 | all versions |
| microsoft | windows_rt_8.1 | all versions |
| microsoft | windows_server_2012 | all versions |
| microsoft | windows_server_2012 | r2 |
| microsoft | windows_server_2016 | all versions |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/97514
- http://www.securitytracker.com/id/1038240
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0211
- https://www.exploit-db.com/exploits/41902/
- http://www.securityfocus.com/bid/97514
- http://www.securitytracker.com/id/1038240
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0211
- https://www.exploit-db.com/exploits/41902/
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-0211