Record summary

CVE-2017-0214 has a selected CVSS score of 7.0 (high); EIP currently links 1 catalogued exploit and 1 repository PoC.

Description

Windows COM in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when Windows fails to properly validate input before loading type libraries, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0213.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1
Repository PoCs
1

Affected products and versions

1
ProductSourceVersion rangeStatus
CVE ListMicrosoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016.affected

Proofs of concept

2

Catalogued exploits

ExploitDBMicrosoft Windows - Running Object Table Register ROTFLAGS_ALLOWANYCLIENT Privilege EscalationExploitDB exploitby Google Security ResearchNot analyzed1 file
ExploitDB

PoC details

Repository PoCs

GitHubAnonymous-Family/CVE-2017-0213Repository PoCby Anonymous-FamilyStars: 0Not analyzed3 files

153.8 KiB · linked to 3 vulnerabilities

GitHub

PoC details

References

4