Field Assessment
AI analysis pending.
CVE
CVE-2016-7257
Severity
MEDIUM
CVSS
6.5
EPSS
22.50%
Microsoft Windows Office
Original Filing — NVD Description
The GDI component in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Office for Mac 2011, and Office 2016 for Mac allows remote attackers to obtain sensitive information from process memory via a crafted web site, aka "GDI Information Disclosure Vulnerability."