CVE-2017-8566
CVE-2017-8566
Vexday Risk Score
3Low
SSVC decision (CISA)
Track
No exploitation signal → monitor
CVSS —EPSS 1.0%KEV nãoPoC —Nuclei —Metasploit —Patch —
Lifecycle
11 Jul 2017Published on NVD
Recommendation: Monitor — no exploitation signal at the moment.
Microsoft Windows 1607, 1703, and Windows Server 2016 allows an elevation of privilege vulnerability due to Windows Input Method Editor (IME) improperly handling parameters in a method of a DCOM class, aka "Windows IME Elevation of Privilege Vulnerability".
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →