Lucene search

K
cvelistMicrosoftCVELIST:CVE-2017-11771
HistoryOct 10, 2017 - 12:00 a.m.

CVE-2017-11771

2017-10-1000:00:00
microsoft
www.cve.org
1

9.7 High

AI Score

Confidence

High

0.144 Low

EPSS

Percentile

95.8%

The Microsoft Windows Search component on Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows a remote code execution vulnerability when it fails to properly handle DNS responses, aka “Windows Search Remote Code Execution Vulnerability”.

CNA Affected

[
  {
    "product": "Windows Search",
    "vendor": "Microsoft Corporation",
    "versions": [
      {
        "status": "affected",
        "version": "Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016"
      }
    ]
  }
]