CVE-2017-8566 Information
Feb 14, 2021
cve
Description
Microsoft Windows 1607 1703 and Windows Server 2016 allows an elevation of privilege vulnerability due to Windows Input Method Editor (IME) improperly handling parameters in a method of a DCOM class aka \Windows IME Elevation of Privilege Vulnerability.
CVSS Vector
CVSS:3.0/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securityfocus.com/bid/99404 http://www.securitytracker.com/id/1038853 https://portal.msrc.microsoft.com/en-us/security-guidance/advisory/CVE-2017-8566
Attack Complexity
HIGH
Privileges Required
LOW
User Interaction Required
LOW
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
7.0
Share on: