PT-2017-2553 · Microsoft · Windows Server 2016+2
Published
2017-07-11
·
Updated
2019-10-03
·
CVE-2017-8584
CVSS v2.0
7.9
High
| Vector | AV:A/AC:M/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Windows 10 version 1607
Windows Server 2016
Description
The issue is related to insufficient access control in the Windows operating system component, allowing an attacker to execute arbitrary code using a specially crafted WiFi packet. This can be exploited by remote attackers to affect the system.
Recommendations
For Windows 10 version 1607, apply the necessary security updates to resolve the issue.
For Windows Server 2016, apply the necessary security updates to resolve the issue.
As a temporary workaround, consider restricting WiFi packet handling to minimize the risk of exploitation.
Fix
Improper Access Control
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows 10
Windows Server 2016