Medium severity5.5NVD Advisory· Published Jun 15, 2017· Updated Jun 17, 2026
CVE-2017-0295
CVE-2017-0295
Description
Microsoft Windows 10 1607 and 1703, and Windows Server 2016 allow an authenticated attacker to modify the C:\Users\DEFAULT folder structure, aka "Windows Default Folder Tampering Vulnerability".
Affected products
6cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_10:1607:*:*:*:*:*:*:*
- cpe:2.3:o:microsoft:windows_10:1703:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*
- (no CPE)range: 2016
- Range: 1607, 1703
- Microsoft Corporation/Microsoft Windowsv5Range: Microsoft Windows 10 1607 and 1703, and Windows Server 2016.
Patches
Vulnerability mechanics
References
3- portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2017-0295nvdPatchVendor Advisory
- www.securityfocus.com/bid/98904nvdThird Party AdvisoryVDB Entry
- www.securitytracker.com/id/1038674nvd
News mentions
0No linked articles in our index yet.