AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2017-0055

MEDIUM · CVSS 6.1 EPSS 16.37%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2017-03-17 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2017-0055
Severity
MEDIUM
CVSS
6.1
EPSS
16.37%
Microsoft Windows

Original NVD Description

Microsoft Internet Information Server (IIS) in Windows Vista SP2; Windows Server 2008 SP2 and R2; Windows 7 SP1; Windows 8.1; Windows Server 2012 Gold and R2; Windows RT 8.1; Windows 10 Gold, 1511, and 1607; and Windows Server 2016 allows remote attackers to perform cross-site scripting and run script with local user privileges via a crafted request, aka "Microsoft IIS Server XSS Elevation of Privilege Vulnerability."