Vulnerability Name: | CVE-2017-0211 (CCN-124335) | ||||||||||||
Assigned: | 2016-09-09 | ||||||||||||
Published: | 2017-04-11 | ||||||||||||
Updated: | 2019-10-03 | ||||||||||||
Summary: | An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability." | ||||||||||||
CVSS v3 Severity: | 5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N) 5.0 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N/E:P/RL:O/RC:C)
4.7 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N/E:P/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N)
| ||||||||||||
Vulnerability Type: | CWE-610 | ||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2017-0211 Source: BID Type: Third Party Advisory, VDB Entry 97514 Source: CCN Type: BID-97514 Microsoft Windows OLE CVE-2017-0211 Local Privilege Escalation Vulnerability Source: SECTRACK Type: UNKNOWN 1038240 Source: XF Type: UNKNOWN ms-ole-cve20170211-priv-esc(124335) Source: CCN Type: Microsoft Security Tech Center Security Update Guide Source: CONFIRM Type: Patch, Vendor Advisory https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0211 Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [04-20-2017] Source: EXPLOIT-DB Type: UNKNOWN 41902 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration CCN 1: ![]() | ||||||||||||
BACK |