Information Disclosure Vulnerability in Microsoft Windows and Office Products
CVE-2017-8695

5.3MEDIUM

Key Information:

Vendor
Microsoft
Vendor
CVE Published:
13 September 2017

Summary

The vulnerability in Microsoft Windows Uniscribe allows attackers to exploit specially crafted documents or untrusted webpages to potentially access sensitive information. This information may provide further means to compromise a user's system, highlighting the importance of applying timely security updates and practicing good browsing and file handling hygiene.

Affected Version(s)

Windows Uniscribe Microsoft Windows Server 2008 SP2 and R2 SP1

Windows Uniscribe Windows 7 SP1

Windows Uniscribe Windows 8.1

References

CVSS V3.1

Score:
5.3
Severity:
MEDIUM
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
High
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.