🛡 CVE-2016-3393
Microsoft Windows Graphics Device Interface (GDI) Remote Code Execution Vulnerability
Microsoft Windows CWE-284
Ransomware use
—
CISA KEV
EPSS
68.7%
Likely exploited · 99th pct
Added to KEV
2022-05-25
CISA
Remediate by
2022-06-15
⚠ OVERDUE
CWE
CWE-284
weakness
📈 EPSS exploit probability
68.7%
FIRST EPSS — 30-day probability of exploitation in the wild · band Likely exploited · higher than 99% of all scored CVEs
⚠ KEV remediation overdue
CISA required federal remediation by 2022-06-15. This exploited vulnerability is past its Binding Operational Directive 22-01 due date — prioritize patch/mitigation and hunt for exploitation.
📄 Description
A remote code execution vulnerability exists due to the way the Windows GDI component handles objects in the memory. An attacker who successfully exploits this vulnerability could take control of the affected system.
🔗 External references & OSINT
🔄 Internal pivots & actions
🛡 Add to case
🧩 Advanced Capabilities
Workstation · Copilot · AI Skills · Automation · Playbooks · Lookups · Docs · Reports
🤖 AI Copilot
⚡ AI Skills
🔍 Lookup & Enrich
📚 Docs & Reports
💡 Recommendations
- Explore related tools below
- Automate recurring work via cron