6.9
CVSSv2

CVE-2017-8714

Published: 13/09/2017 Updated: 19/09/2017
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7.8 | Impact Score: 6 | Exploitability Score: 1.1
VMScore: 614
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

The Windows Hyper-V component on Microsoft Windows 8.1, Windows Server 2012 Gold and R2,, Windows 10 1607, and Windows Server 2016 allows a remote code execution vulnerability when it fails to properly validate input from an authenticated user on a guest operating system, aka "Remote Desktop Virtual Host Remote Code Execution Vulnerability".

Vulnerable Product Search on Vulmon Subscribe to Product

microsoft windows server 2012 -

microsoft windows server 2016

microsoft windows 8.1

microsoft windows server 2012 r2

microsoft windows 10 1607

Vendor Advisories

An exploitable buffer overflow vulnerability exists in the LoadEncoding functionality of the R programming language version 330 A specially crafted R script can cause a buffer overflow resulting in a memory corruption An attacker can send a malicious R script to trigger this vulnerability (CVE-2017-8714) ...