ID:1417 - Exploit for Information disclosure in Windows and Windows Server - CVE-2017-8462
Published: March 18, 2020
Windows
Windows Server
Link to public exploit:
Vulnerability description
The vulnerability allows a local attacker to obtain potentially sensitive information.
The vulnerability exists due to improper initialization of a memory address by the Windows kernel. A local attacker can run a specially crafted application, trigger memory corruption and gain access to potentially sensitive information.
Successful exploitation of the vulnerability may result in Kernel Address Space Layout Randomization (KASLR) bypass.