Exploitation Summary
EIP tracks 1 public exploit for CVE-2017-0211. PoCs published by Google Security Research.
AI-analyzed exploit summary The exploit leverages the Runtime Broker's ClipboardBroker to escape the AppContainer sandbox by manipulating an OOP IStorage object, allowing arbitrary code execution outside the sandbox via a JScript payload in an XSLT transform.
Description
An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability."
Exploits (1)
The exploit leverages the Runtime Broker's ClipboardBroker to escape the AppContainer sandbox by manipulating an OOP IStorage object, allowing arbitrary code execution outside the sandbox via a JScript payload in an XSLT transform.
References (4)
Scores
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N