CVE-2017-11937
high · 7.8The Microsoft Malware Protection Engine running on Microsoft Forefront and Microsoft Defender on Windows 7 SP1, Windows 8.1, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, 1709 and Windows Server 2016, Windows Server, version 1709, Microsoft Exchange Server 2013 and 2016, does not properly scan a specially crafted file leading to remote code execution. aka "Microsoft Malware Protection Engine Remote Code Execution Vulnerability".
7.8
CVSS
28.3%
EPSS (exploit prob.)
98th
EPSS percentile
2017-12-07
Published
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Weaknesses
CWE-119
Affected products
| Vendor | Product | Affected versions |
|---|---|---|
| microsoft | malware_protection_engine | <= 1.1.14306.0 |
| microsoft | exchange_server | 2013 |
| microsoft | exchange_server | 2016 |
| microsoft | forefront_endpoint_protection_2010 | all versions |
| microsoft | windows_defender | all versions |
| microsoft | windows_10 | all versions |
| microsoft | windows_10 | 1511 |
| microsoft | windows_10 | 1607 |
| microsoft | windows_10 | 1703 |
| microsoft | windows_10 | 1709 |
| microsoft | windows_7 | all versions |
| microsoft | windows_8.1 | all versions |
| microsoft | windows_rt_8.1 | all versions |
| microsoft | windows_server_2016 | all versions |
| microsoft | windows_server_2016 | 1709 |
Check a specific version with /api/v1/cve/match.
References
- http://www.securityfocus.com/bid/102070
- http://www.securitytracker.com/id/1039972
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11937
- http://www.securityfocus.com/bid/102070
- http://www.securitytracker.com/id/1039972
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-11937
Query this programmatically:
curl https://evil-db.io/api/v1/cve/CVE-2017-11937