peter bassill · operator
$ cve CVE-2017-0211 JSON

CVE-2017-0211 EXPLOIT

5.5
MEDIUM · CVSS 3.0 · EPSS 14.1% (pctl 96)

Patch early

A public exploit exists.

Description

An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability."

Scoring

CVSS5.5 (MEDIUM, v3.0)
VectorCVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N
EPSS14.09% — more likely to be exploited than 96% of all CVEs
WeaknessCWE-610
On CISA KEVno
Public exploityes
Published2017-04-12
Last modified2026-06-17

Affected (5)

VendorProduct
microsoftwindows 10
microsoftwindows 8.1
microsoftwindows rt 8.1
microsoftwindows server 2012
microsoftwindows server 2016

Public exploits

References

→ the Explorer  ·  watch your stack  ·  NVD