CVE-2017-0045: Microsoft Windows 7

Medium severity, CVSS 5.5. EPSS: 6.6% chance of exploitation in the next 30 days.

Windows DVD Maker in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, and Windows Vista SP2 does not properly parse crafted .msdvd files, which allows attackers to obtain information to compromise a target system, aka "Windows DVD Maker Cross-Site Request Forgery Vulnerability."

Affected products

Published 2017-03-17. Last modified 2026-06-17.