CVE-2017-0043 Information
Feb 14, 2021
cve
Description
Active Directory Federation Services in Microsoft Windows 10 1607 Windows Server 2008 SP2 and R2 SP1 Windows Server 2012 Gold and R2 and Windows Server 2016 allows local users to obtain sensitive information via a crafted application aka \Microsoft Active Directory Federation Services Information Disclosure Vulnerability.\
CVSS Vector
CVSS:3.0/AV:A/AC:H/PR:N/UI:N/S:U/C:H/I:N/A:N
Reference
http://www.securityfocus.com/bid/96628 http://www.securitytracker.com/id/1038018 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0043
Attack Complexity
HIGH
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.3
Share on: