Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4xhw-j487-w7p2

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 4.4

Описание

The GDI component in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "GDI Information Disclosure Vulnerability."

The GDI component in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "GDI Information Disclosure Vulnerability."

EPSS

Процентиль: 77%
0.01149
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.4
nvd
около 8 лет назад

The GDI component in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and Windows Server 2016 allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "GDI Information Disclosure Vulnerability."

CVSS3: 4.2
msrc
около 8 лет назад

Windows GDI Information Disclosure Vulnerability

EPSS

Процентиль: 77%
0.01149
Низкий

4.4 Medium

CVSS3

Дефекты

CWE-200