Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-3p8g-6946-c7f2

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "Win32k Insufficient User Input Validation Vulnerability."

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "Win32k Insufficient User Input Validation Vulnerability."

EPSS

Процентиль: 70%
0.00629
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 15 лет назад

win32k.sys in the kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP1 and SP2, and Server 2008 Gold and SP2 does not properly validate user-mode input, which allows local users to gain privileges via a crafted application, aka "Win32k Insufficient User Input Validation Vulnerability."

EPSS

Процентиль: 70%
0.00629
Низкий

Дефекты

CWE-20