CVE-2017-8464CISA KEV
Microsoft Windows Shell (.lnk) Remote Code Execution Vulnerability
CISA lists this Microsoft vulnerability as known exploited. Its MSRC release detail is outside this installation's collected history.
CISA catalog record
Windows Shell in multiple versions of Microsoft Windows allows local users or remote attackers to execute arbitrary code via a crafted .LNK file
- Product
- Windows
- Added to KEV
- 10 Feb 2022
- Federal remediation due
- 10 Aug 2022
- Known ransomware use
- Not reported