← Back to browse · API

CVE-2017-8464

Severity
HIGH
CVSS
8.8
EPSS
0.88582
Risk score
91.2
CISA KEV
Yes
PoC
No
Published
2022-02-10
Modified
2022-02-10
First seen
2026-08-07
Aliases
EUVD-2017-17414, GHSA-V5X6-R6HP-XGPC
Products
Microsoft Corporation:Windows Shell Microsoft Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, 1607, 1703, and Windows Server 2016, Microsoft:Windows
Sources
euvd EUVD-2017-17414
cisa.gov CVE-2017-8464

Description

Windows Shell in multiple versions of Microsoft Windows allows local users or remote attackers to execute arbitrary code via a crafted .LNK file

References