CVE-2017-0022: Microsoft XML Core Services Information Disclosure Vulnerability
Microsoft XML Core Services (MSXML) improperly handles objects in memory, allowing attackers to test for files on disk via a crafted web site. Required action: Apply updates per vendor instructions.
CISA KEV ↗ · unattributed attribution