Cybersecurity Alerts

Actively Exploited Vulnerabilities

← Back to Cybersecurity Alerts

CVE-2017-0022

Microsoft | XML Core ServicesAdded 2022-05-24Remediation Deadline 2022-06-14

Microsoft XML Core Services Information Disclosure Vulnerability

Microsoft XML Core Services (MSXML) improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site.

Required Action

Apply updates per vendor instructions.

Weakness Classification

CWE-200

References