vulnerability
Microsoft Windows: CVE-2017-0213: Windows COM Elevation of Privilege Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 2 | (AV:L/AC:M/Au:N/C:N/I:P/A:N) | May 9, 2017 | May 9, 2017 | Sep 5, 2025 |
Severity
2
CVSS
(AV:L/AC:M/Au:N/C:N/I:P/A:N)
Published
May 9, 2017
Added
May 9, 2017
Modified
Sep 5, 2025
Description
Windows COM Aggregate Marshaler in Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, and 1703, and Windows Server 2016 allows an elevation privilege vulnerability when an attacker runs a specially crafted application, aka "Windows COM Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2017-0214.
Solutions
microsoft-windows-windows_10-1507-kb4019474microsoft-windows-windows_10-1511-kb4019473microsoft-windows-windows_10-1607-kb4019472microsoft-windows-windows_10-1703-kb4038788microsoft-windows-windows_server_2012-kb4019214microsoft-windows-windows_server_2012_r2-kb4019213microsoft-windows-windows_server_2016-1607-kb4019472msft-kb4018556-02b2148e-2194-4f48-a176-5ffa0556afc4msft-kb4018556-1444f0a0-d0f1-4f91-a6a4-ee1f7f2b97dfmsft-kb4018556-a2b5c17f-71bc-4320-b4ed-114e31de9ed3msft-kb4018556-ddede4ee-c49d-4d9b-b631-ea1c10985a21msft-kb4019213-3041ea24-871e-44bd-ad52-9b2620ca82bcmsft-kb4019213-3329281f-2407-4bda-b8a6-37dc9b1ef179msft-kb4019214-6dbabc80-d41f-4736-ad08-5c172cb9c274msft-kb4019214-79e81c68-ba95-4c77-a747-5f2effd6388emsft-kb4019263-46c89aaa-6d7f-48c4-abda-2e0709b58b71msft-kb4019263-a1d1d5c2-78be-44c0-b0eb-2706f1225447msft-kb4019263-c218dbd8-9396-4978-a84d-aeb7a2c77ce3msft-kb4019263-c4749633-16b1-4395-b0bd-1930ee20d5c6msft-kb4019263-cd7fd4a7-f4db-493d-8cc3-70d33e708775msft-kb4019263-d8a880a2-6caa-453f-81c8-c6a88bf19d69
References
- BID-98102
- CVE-2017-0213
- https://attackerkb.com/topics/CVE-2017-0213
- https://support.microsoft.com/help/4019213
- https://support.microsoft.com/help/4019214
- https://support.microsoft.com/help/4019472
- https://support.microsoft.com/help/4019473
- https://support.microsoft.com/help/4019474
- https://support.microsoft.com/help/4038788
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.