CVE-2017-8494
CVE-2017-8494
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.9%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
15 Jun 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allow a locally-authenticated attacker to run a specially crafted application on a targeted system when Windows Secure Kernel Mode fails to properly handle objects in memory, aka "Windows Elevation of Privilege Vulnerability".
Affected products
Microsoft Corporation · Microsoft WindowsWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →