vulnerability
Microsoft CVE-2017-7269: WebDAV Remote Code Execution Vulnerability
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 10 | (AV:N/AC:L/Au:N/C:C/I:C/A:C) | Jun 14, 2017 | Jun 14, 2017 | May 3, 2022 |
Severity
10
CVSS
(AV:N/AC:L/Au:N/C:C/I:C/A:C)
Published
Jun 14, 2017
Added
Jun 14, 2017
Modified
May 3, 2022
Description
A vulnerability exists in IIS when WebDAV improperly handles objects in memory, which could allow an attacker to run arbitrary code on the user’s system. An attacker who successfully exploited this vulnerability could gain the same user rights as the current user.
Solutions
msft-kb3197835-3cf55364-74d6-4d28-a613-a7591e1c683bmsft-kb3197835-54bb8de8-0f29-411a-9ba4-ee273fa46e1cmsft-kb3197835-8a952d9b-eb56-45f6-880a-f98f289386e0msft-kb3197835-afe2ff90-6180-4162-8ecf-09199c941c32msft-kb3197835-bd1afb49-4658-435c-85fc-9f65cf093a9cmsft-kb3197835-ee68c4a1-60f2-4ce2-a10e-b9bf92353053
Rapid7 Labs
2026 Global Threat Landscape Report
The predictive window has collapsed. Exploitation follows disclosure in days. See how attackers are accelerating and how to stay ahead.