Microsoft ActiveX Information Disclosure Vulnerability - CVE-2017-0242ID: oval:org.secpod.oval:def:40533 | Date: (C)2017-05-11 (M)2022-10-10 |
Class: VULNERABILITY | Family: windows |
An information disclosure vulnerability exists in the way some ActiveX objects are instantiated. An attacker who successfully exploited this vulnerability could gain access to protected memory contents.To exploit this vulnerability, an attacker would need to convince a user to open a malicious document that could then instantiate the vulnerable object. This security update addresses the vulnerability by correcting how these objects are instantiated.
Platform: |
Microsoft Windows 7 |
Microsoft Windows Server 2008 |
Microsoft Windows Server 2008 R2 |