The vulnerability works against default Windows installations. The attacker does not need to be on the same local area network (LAN) as the victim, which means vulnerable Windows computers can be hacked remotely. The attack is “wormable,” capability to spread itself. The vulnerability affects Windows 7, 8.1, RT and 10 computers, as well as Windows Server 2016 operating systems. Microsoft has not yet responded to the latest claims, but the company has its May 2017 Patch Tuesday scheduled tomorrow, May 9, so hopefully it will include a security patch to resolve this issue.
Source: https://thehackernews.com/2017/05/windows-rce-exploit.html

