CVE-2017-0292

high

Description

Windows PDF in Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows remote code execution if a user opens a specially crafted PDF file, aka "Windows PDF Remote Code Execution Vulnerability". This CVE ID is unique from CVE-2017-0291.

References

https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0292

http://www.securitytracker.com/id/1038678

http://www.securityfocus.com/bid/98836

Details

Source: Mitre, NVD

Published: 2017-06-15

Updated: 2019-10-03

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 7.8

Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High