{
    "id": "CVE-2017-0165",
    "published": "2017-04-12 14:59:00",
    "last_modified": "2026-06-17 00:57:12",
    "cvss_score": "7.8",
    "cvss_severity": "HIGH",
    "cvss_version": "3.0",
    "cvss_vector": "CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H",
    "cwe": null,
    "description": "An elevation of privilege vulnerability exists when Microsoft Windows running on Windows 10, Windows 10 1511, Windows 8.1, Windows RT 8.1, and Windows Server 2012 R2 fails to properly sanitize handles in memory, aka \"Windows Elevation of Privilege Vulnerability.\"",
    "epss_score": "0.03338",
    "epss_percentile": "0.88304",
    "kev": 0,
    "kev_due": null,
    "has_exploit": 1,
    "updated_at": "2026-10-07 18:17:15",
    "priority": {
        "rank": 2,
        "label": "Patch early",
        "why": "A public exploit exists."
    },
    "products": [
        {
            "vendor": "microsoft",
            "product": "windows_10"
        },
        {
            "vendor": "microsoft",
            "product": "windows_8.1"
        },
        {
            "vendor": "microsoft",
            "product": "windows_rt_8.1"
        },
        {
            "vendor": "microsoft",
            "product": "windows_server_2012"
        }
    ],
    "kev_detail": null,
    "exploits": [
        {
            "source": "exploit-db",
            "ref_id": "41901",
            "title": "Microsoft Windows 10 (Build 10586) - 'IEETWCollector' Arbitrary Directory/File Deletion Privilege Escalation",
            "date": "2017-04-20",
            "url": "https://www.exploit-db.com/exploits/41901"
        }
    ],
    "refs_list": [
        "http://www.securityfocus.com/bid/97467",
        "http://www.securitytracker.com/id/1038239",
        "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0165",
        "https://www.exploit-db.com/exploits/41901/",
        "http://www.securityfocus.com/bid/97467",
        "http://www.securitytracker.com/id/1038239",
        "https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0165",
        "https://www.exploit-db.com/exploits/41901/"
    ]
}