4.3
CVSSv3

CVE-2017-0073

Published: 17/03/2017 Updated: 31/03/2023
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 4.3 | Impact Score: 1.4 | Exploitability Score: 2.8
VMScore: 385
Vector: AV:N/AC:M/Au:N/C:P/I:N/A:N

Vulnerability Summary

The Graphics Device Interface (GDI) in Microsoft Windows Vista SP2; Windows Server 2008 SP2 and R2 SP1; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; and Windows 10 Gold, 1511, and 1607 allows remote malicious users to obtain sensitive information from process memory via a crafted web site, aka "Windows GDI+ Information Disclosure Vulnerability." This vulnerability is different from those described in CVE-2017-0060 and CVE-2017-0062.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2008 r2

microsoft live meeting 2007

microsoft windows server 2012 r2

microsoft lync 2010

microsoft office 2007

microsoft windows 10 1511

microsoft windows 10 1607

microsoft windows 8.1 -

microsoft office 2010

microsoft windows server 2016 -

microsoft windows server 2008 -

microsoft lync 2013

microsoft office word viewer -

microsoft skype for business 2016

microsoft windows 7 -

microsoft windows rt 8.1 -

microsoft windows vista -

microsoft windows server 2012 -

microsoft windows 10 -

microsoft skype for business basic 2016