← back
CVE-2017-0245

CVE-2017-0245

EPSS 7.7%
Vexday Risk Score
23Low
SSVC decision (CISA)
Attend
PoC available → attend closely
CVSS EPSS 7.7%KEV nãoPoC públicaNuclei Metasploit Patch
Lifecycle
12 May 2017Published on NVD
15 May 2017Public PoC
Recommendation: Plan a near-term fix — a public PoC already exists.
The kernel-mode drivers in Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1 and Windows Server 2012 Gold allow a local authenticated attacker to execute a specially crafted application to obtain kernel information, aka "Win32k Information Disclosure Vulnerability."
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →