VDB
CVE-2017-0171
CVE-2017-0171
PUBLISHED
CVSS 4.300000190734863 MEDIUM
Windows DNS Server allows a denial of service vulnerability when Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 Gold and R2, and Windows Server 2016 are configured to answer version queries, aka "Windows DNS Server Denial of Service Vulnerability".
EPSS 21.48% · 95.8th percentile
Risk Scores
CVSS 2.0
4.300000190734863
EPSS Score
21.48%
95.8th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| microsoft | windows_server_2012 | r2 |
| microsoft | windows_server_2008 | * |
| Microsoft Corporation | Windows DNS Server | Microsoft Windows Server 2008 SP2 and R2 SP1, Windows Server 2012 Gold and R2, and Windows Server 2016 |
| microsoft | windows_server_2016 |
Exploit Intelligence
- homjxi0e/CVE-2017-0290- (github-poc)
- homjxi0e/CVE-2017-0290- (github-poc)
- homjxi0e/CVE-2017-0290- (github-poc)
- homjxi0e/CVE-2017-0290- (github-poc)
- poc for 0263 (github-poc)
- poc for 0263 (github-poc)
- poc for 0263 (github-poc)
- poc for 0263 (github-poc)
- Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214. (github-poc)
- Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214. (github-poc)
…and 28 more exploits
Timeline
- May 12, 2017 CVE Published
- Apr 14, 2021 EPSS Score
- Jun 23, 2021 EPSS Score
- Aug 24, 2021 EPSS Score
- Dec 27, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 28, 2022 EPSS Score
- May 2, 2022 EPSS Score
- May 17, 2022 CVE Updated
- Jul 3, 2022 EPSS Score
- Nov 6, 2022 EPSS Score
- Jan 8, 2023 EPSS Score
References
- 98097 vdb
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0171 url
- https://nvd.nist.gov/vuln/detail/CVE-2017-0171 advisory
- https://portal.msrc.microsoft.com/fr-FR/security-guidance advisory
- https://portal.msrc.microsoft.com/fr-fr/security-guidance/releasenotedetail/bc365363-f51e-e711-80da-000d3a32fc99 advisory