CyberSec.Space Logo
返回 CVE 瀏覽器

CVE-2017-8464

Known Exploited (CISA KEV)HIGH
8.8
CVSS Severity Score
EPSS Score76.4170%
EPSS Percentile96.02th
Published2017年6月15日
Last Modified2026年4月22日

Vulnerability Description

Windows Shell in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016 allows local users or remote attackers to execute arbitrary code via a crafted .LNK file, which is not properly handled during icon display in Windows Explorer or any other application that parses the icon of the shortcut. aka "LNK Remote Code Execution Vulnerability."

Affected Platforms (CPE)

💻
Microsoft

Windows 10 1511

All versions
💻
Microsoft

Windows 10 1607

All versions
💻
Microsoft

Windows 10 1703

All versions
💻
Microsoft

Windows 7

All versions
💻
Microsoft

Windows 8.1

All versions
💻
Microsoft

Windows Rt 8.1

All versions
💻
Microsoft

Windows Server 2008

All versions
💻
Microsoft

Windows Server 2008

= r2
💻
Microsoft

Windows Server 2008

= r2
💻
Microsoft

Windows Server 2012

All versions
💻
Microsoft

Windows Server 2012

= r2
💻
Microsoft

Windows Server 2016

All versions

References & Advisories

相關漏洞威脅