Local Privilege Escalation in Windows Graphics Component by Microsoft
CVE-2017-0155

7HIGH

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
12 April 2017

Summary

The Windows Graphics component in various Microsoft operating systems, including Windows Vista SP2, Windows Server 2008 SP2, Windows Server 2008 R2 SP1, and Windows 7 SP1, has a vulnerability that enables local users to elevate their privileges. This can be exploited through a specially crafted application, allowing unauthorized actions on the system. This issue highlights the importance of applying patches and ensuring that systems are updated to defend against potential exploits.

Affected Version(s)

Windows Graphics Component Windows Vista SP2, Windows Server 2008 SP2, Windows Server 2008 R2 SP1, and Windows 7 SP1

References

CVSS V3.1

Score:
7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.