CVE-2017-0211

MEDIUM

Microsoft Windows OLE - Privilege Escalation

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2017-0211. PoCs published by Google Security Research.

AI-analyzed exploit summary The exploit leverages the Runtime Broker's ClipboardBroker to escape the AppContainer sandbox by manipulating an OOP IStorage object, allowing arbitrary code execution outside the sandbox via a JScript payload in an XSLT transform.

Description

An elevation of privilege vulnerability exists in Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Server 2016 versions of Microsoft Windows OLE when it fails an integrity-level check, aka "Windows OLE Elevation of Privilege Vulnerability."

Exploits (1)

exploitdb WORKING POC VERIFIED
by Google Security Research · textlocalwindows
https://www.exploit-db.com/exploits/41902

The exploit leverages the Runtime Broker's ClipboardBroker to escape the AppContainer sandbox by manipulating an OOP IStorage object, allowing arbitrary code execution outside the sandbox via a JScript payload in an XSLT transform.

Classification
Working Poc 95%
Attack Type
Lpe
Complexity
Moderate
Reliability
Reliable
Target: Windows 10 (10586/14393)
No auth needed
Prerequisites: Low IL/AppContainer process context · Clipboard access
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (4)

Core 4
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
https://www.exploit-db.com/exploits/41902/
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1038240
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/97514

Scores

CVSS v3 5.5
EPSS 0.1398
EPSS Percentile 96.1%
Attack Vector LOCAL
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

Details

CWE
CWE-610
Status published
Products (10)
microsoft/windows_10
microsoft/windows_10 1511
microsoft/windows_10 1607
microsoft/windows_10 1703
microsoft/windows_8.1
microsoft/windows_rt_8.1
microsoft/windows_server_2012
microsoft/windows_server_2012 r2
microsoft/windows_server_2016
Microsoft Corporation/Windows OLE Windows 10, Windows 8.1, Windows RT 8.1, Windows Server 2012, Windows Server 2012 R2, and Windows Se
Published Apr 12, 2017
Tracked Since Feb 18, 2026