CVE-2017-0045: Microsoft Windows 7
Medium severity, CVSS 5.5. EPSS: 6.6% chance of exploitation in the next 30 days.
Windows DVD Maker in Windows 7 SP1, Windows Server 2008 SP2 and R2 SP1, and Windows Vista SP2 does not properly parse crafted .msdvd files, which allows attackers to obtain information to compromise a target system, aka "Windows DVD Maker Cross-Site Request Forgery Vulnerability."
Affected products
- Microsoft Windows 7: any version
- Microsoft Windows Server 2008: any version; version r2 only
- Microsoft Windows Vista: any version
Published 2017-03-17. Last modified 2026-06-17.