Microsoft classifies this as less likely to be exploited ... and used by an unauthenticated attacker to exploit "a ...