Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。Windows COM Aggregate Marshaler是其中的一个组件。 Microsoft Windows中的Windows COM Aggregate Marshaler存在提权漏洞。本地攻击者可通过运行特制的应用程序利用该漏洞在应用程序上下文中执行任意任意代码。以下版本受到影响:Microsoft Windows Server 2008 SP2和R2 SP1;Windows 7 SP1;Windows
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Microsoft Corporation | Windows COM | Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016. | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | None | https://github.com/shaheemirza/CVE-2017-0213- | POC Details |
| 2 | CVE-2017-0213 for command line | https://github.com/zcgonvh/CVE-2017-0213 | POC Details |
| 3 | None | https://github.com/likescam/CVE-2017-0213 | POC Details |
| 4 | A version of CVE-2017-0213 that I plan to use with an Empire stager | https://github.com/jbooz1/CVE-2017-0213 | POC Details |
| 5 | Fixed No Virus Manual Automatic Loader exe no zip because zip picks up the anti virus detector. | https://github.com/eonrickity/CVE-2017-0213 | POC Details |
| 6 | Binary | https://github.com/Jos675/CVE-2017-0213-Exploit | POC Details |
| 7 | Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214. | https://github.com/Anonymous-Family/CVE-2017-0213 | POC Details |
| 8 | None | https://github.com/billa3283/CVE-2017-0213 | POC Details |
| 9 | None | https://github.com/likekabin/CVE-2017-0213 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2017-0263 | Microsoft Windows 权限许可和访问控制问题漏洞 | |
| CVE-2017-0275 | Microsoft Windows SMB 信息泄露漏洞 | |
| CVE-2017-0278 | Microsoft Windows SMB 安全漏洞 | |
| CVE-2017-0277 | Microsoft Windows SMB 安全漏洞 | |
| CVE-2017-0276 | Microsoft Windows SMB 信息泄露漏洞 | |
| CVE-2017-0279 | Microsoft Windows SMB 安全漏洞 | |
| CVE-2017-0267 | Microsoft Windows SMB 信息泄露漏洞 | |
| CVE-2017-0266 | Microsoft Edge 安全漏洞 | |
| CVE-2017-0265 | Microsoft Office 安全漏洞 | |
| CVE-2017-0264 | Microsoft Office 安全漏洞 | |
| CVE-2017-0268 | Microsoft Windows 信息泄露漏洞 | |
| CVE-2017-0262 | Microsoft Office 安全漏洞 | |
| CVE-2017-0261 | Microsoft Office 安全漏洞 | |
| CVE-2017-0259 | Microsoft Windows Kernel 信息泄露漏洞 | |
| CVE-2017-0258 | Microsoft Windows Kernel 信息泄露漏洞 | |
| CVE-2017-0256 | Microsoft ASP.NET Core 安全漏洞 | |
| CVE-2017-0255 | Microsoft SharePoint 跨站脚本漏洞 | |
| CVE-2017-0254 | Microsoft Office 安全漏洞 | |
| CVE-2017-0249 | Microsoft ASP.NET Core 权限许可和访问控制问题漏洞 | |
| CVE-2017-0248 | Microsoft .NET Framework 安全漏洞 |
Showing top 20 of 58 CVEs. View all on vendor page → →
No comments yet