CVE-2017-0045
MEDIUMWindows DVD Maker - Information Disclosure via Crafted .msdvd File Parsing
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-0045. PoCs published by hyp3rlinx.
AI-analyzed exploit summary The exploit demonstrates an XML External Entity (XXE) injection vulnerability in Windows DVD Maker, allowing remote attackers to read arbitrary files from the victim's system via a crafted .msdvd file. The PoC includes a malicious DTD file and an .msdvd file that exfiltrates the XAMPP server's private key.
Description
Windows DVD Maker in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, and Windows Vista SP2 does not properly parse crafted .msdvd files, which allows attackers to obtain information to compromise a target system, aka "Windows DVD Maker Cross-Site Request Forgery Vulnerability."
Exploits (1)
The exploit demonstrates an XML External Entity (XXE) injection vulnerability in Windows DVD Maker, allowing remote attackers to read arbitrary files from the victim's system via a crafted .msdvd file. The PoC includes a malicious DTD file and an .msdvd file that exfiltrates the XAMPP server's private key.
References (5)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N