6.5

CVE-2017-0022

Warnung
Exploit
Microsoft XML Core Services (MSXML) in Windows 10 Gold, 1511, and 1607; Windows 7 SP1; Windows 8.1; Windows RT 8.1; Windows Server 2008 SP2 and R2 SP1; Windows Server 2012 Gold and R2; Windows Server 2016; and Windows Vista SP2 improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site, aka "Microsoft XML Information Disclosure Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ Xml Core Services Version 3.0
   Microsoft ≫ Windows 10 1507 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1507 Version - HwPlatform x86
   Microsoft ≫ Windows 10 1511 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1511 Version - HwPlatform x86
   Microsoft ≫ Windows 10 1607 Version - HwPlatform x64
   Microsoft ≫ Windows 10 1607 Version - HwPlatform x86
   Microsoft ≫ Windows 7 Version - Update sp1
   Microsoft ≫ Windows 8.1 Version -
   Microsoft ≫ Windows Rt 8.1 Version -
   Microsoft ≫ Windows Server 2008 Version - Update sp2
   Microsoft ≫ Windows Server 2008 Version r2 Update sp1 HwPlatform x64
   Microsoft ≫ Windows Server 2012 Version -
   Microsoft ≫ Windows Server 2012 Version r2
   Microsoft ≫ Windows Server 2016 Version -
   Microsoft ≫ Windows Vista Version - Update sp2
Microsoft ≫ Windows 8.1 Version -
Microsoft ≫ Windows Server 2008 Version r2 Update sp1 HwPlatform x64

24.05.2022: CISA Known Exploited Vulnerabilities (KEV) Catalog

Microsoft XML Core Services Information Disclosure Vulnerability

Schwachstelle

Microsoft XML Core Services (MSXML) improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site.

Beschreibung

Apply updates per vendor instructions.

Erforderliche Maßnahmen
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 18.07% 0.968
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
NIST 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:P/I:N/A:N
CISA-ADP 6.5 2.8 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer

The product performs operations on a memory buffer, but it reads from or writes to a memory location outside the buffer's intended boundary. This may result in read or write operations on unexpected memory locations that could be linked to other variables, data structures, or internal program data.

http://www.securityfocus.com/bid/96069
Third Party Advisory
Broken Link
VDB Entry
http://www.securitytracker.com/id/1038014
Third Party Advisory
Broken Link
VDB Entry
https://0patch.blogspot.com/2017/09/exploit-kit-rendezvous-and-cve-2017-0022.html
Exploit
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0022
Patch
Vendor Advisory
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2017-0022
US Government Resource