CVE-2017-0211
CVE-2017-0211
Vexday Risk Score
28Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS —EPSS 14.0%KEV nãoPoC públicaNuclei —Metasploit —Patch —
Lifecycle
12 Apr 2017Published on NVD
20 Apr 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability."
Affected products
Microsoft Corporation · Windows OLEpublic PoCs found — 2
cve_referencewww.exploit-db.com/exploits/41902/unverifiedexploitdbwww.exploit-db.com/exploits/41902unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →