7.8
CVE-2017-0160
- EPSS 17.85%
- Veröffentlicht 12.04.2017 14:59:00
- Zuletzt bearbeitet 13.05.2026 00:24:29
- Erkennungen
Microsoft .NET Framework 2.0, 3.5, 4.5.2, 4.6, 4.6.1, 4.6.2 and 4.7 allows an attacker with access to the local system to execute malicious code, aka ".NET Remote Code Execution Vulnerability."
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Microsoft ≫ .Net Framework Version 2.0 Update sp2
Microsoft ≫ .Net Framework Version 3.5
Microsoft ≫ .Net Framework Version 3.5.1
Microsoft ≫ .Net Framework Version 4.5.2
Microsoft ≫ .Net Framework Version 4.6
Microsoft ≫ .Net Framework Version 4.6.1
Microsoft ≫ .Net Framework Version 4.6.2
Microsoft ≫ .Net Framework Version 4.7
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 17.85% | 0.968 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.8 | 1.8 | 5.9 |
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 7.2 | 3.9 | 10 |
AV:L/AC:L/Au:N/C:C/I:C/A:C
|
http://www.securityfocus.com/bid/97447
http://www.securitytracker.com/id/1038236
https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0160
https://www.exploit-db.com/exploits/41903/