CVE-2017-0022CISA KEVEPSS p96.8%

CVE-2017-0022Microsoft XML Core Services Information Disclosure Vulnerability

Microsoft / XML Core Services

Description

Microsoft XML Core Services (MSXML) improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site.

Scoring

EPSS18.07% probability of exploitation · percentile 96.8% · 2026-06-18T12:00:27Z

CISA KEV entry

Added to KEV: 2022-05-24

(incoming)1

TypeTargetConfidenceTier
KEVEntryMicrosoft XML Core Services Information Disclosure Vulnerabilitykev-cve-2017-00220%live

Related by meaning· 6

Nearest entities by semantic similarity across the cs-graph corpus.

CVE
Microsoft XML Core Services Memory Corruption Vulnerability
CVE
Microsoft Internet Explorer Information Disclosure Vulnerability
CVE
Microsoft Internet Explorer Remote Code Execution Vulnerability
CVE
Microsoft Internet Explorer Messaging API Information Disclosure Vulnerability
CVE
Microsoft Internet Explorer and Edge Information Disclosure Vulnerability
CVE
Microsoft Office Memory Corruption Vulnerability
Sourced from NVD + CISA KEV + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.