[Forgot Password]
Login  Register Subscribe

30430

 
 

423868

 
 

247621

 
 

909

 
 

194512

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Windows DVD Maker Cross-Site Request Forgery Vulnerability

ID: oval:org.secpod.oval:def:39319Date: (C)2017-03-15   (M)2022-10-10
Class: VULNERABILITYFamily: windows




An information disclosure vulnerability exists in Windows when Windows DVD Maker fails to properly parse a specially crafted .msdvd file. An attacker who successfully exploited the vulnerability could obtain information to further compromise a target system.To exploit the vulnerability, an attacker would have to either log on locally to an affected system or convince a locally authenticated user to execute a specially crafted application. The security update addresses the vulnerability by correcting how Windows DVD Maker parses files.

Platform:
Microsoft Windows 7
Microsoft Windows Vista
Reference:
CVE-2017-0045
CVE    1
CVE-2017-0045
CPE    8
cpe:/o:microsoft:windows_7::sp1:x64
cpe:/o:microsoft:windows_7::sp1:x86
cpe:/o:microsoft:windows_vista:::x64
cpe:/o:microsoft:windows_vista:::x86
...

© SecPod Technologies