Elevation of Privilege Vulnerability in Microsoft Windows Graphics Component
CVE-2017-8720
7.8HIGH
Key Information:
- Vendor
- Microsoft
- Vendor
- CVE Published:
- 13 September 2017
Summary
The Microsoft Windows graphics component presents an elevation of privilege vulnerability due to improper handling of memory objects by the Win32k component. This issue exists across various versions of Microsoft Windows, including Windows 7, 8.1, 10, and several iterations of Windows Server. Successful exploitation could allow an attacker to execute arbitrary code with elevated privileges, potentially compromising system integrity and security.
Affected Version(s)
Windows graphics component Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016
References
CVSS V3.1
Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged
Timeline
Vulnerability published
Vulnerability Reserved