CVE-2017-8572 Information
Feb 14, 2021
cve
Description
Microsoft Outlook 2007 SP3 Outlook 2010 SP2 Outlook 2013 SP1 Outlook 2013 RT SP1 and Outlook 2016 as packaged in Microsoft Office allows an information disclosure vulnerability due to the way that it discloses the contents of its memory aka \Microsoft Office Outlook Information Disclosure Vulnerability.
CVSS Vector
CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Reference
http://www.securityfocus.com/bid/99453 http://www.securitytracker.com/id/1039010 https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-8572
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
REQUIRED
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
NONE
Base Score
NONE
Base Severity
5.5
Share on: