Описание
Win32k Elevation of Privilege Vulnerability
FAQ
What privileges could be gained by an attacker who successfully exploited the vulnerability?
A local, authenticated attacker could gain elevated local system or administrator privileges through a vulnerability in the Win32k.sys driver.
Обновления
Продукт | Статья | Обновление |
---|---|---|
Windows 10 Version 1809 for 32-bit Systems | ||
Windows 10 Version 1809 for x64-based Systems | ||
Windows 10 Version 1809 for ARM64-based Systems | ||
Windows Server 2019 | ||
Windows Server 2019 (Server Core installation) | ||
Windows 10 Version 1909 for 32-bit Systems | ||
Windows 10 Version 1909 for x64-based Systems | ||
Windows 10 Version 1909 for ARM64-based Systems | ||
Windows 10 Version 20H2 for 32-bit Systems | ||
Windows 10 Version 20H2 for ARM64-based Systems |
Показывать по
10
Возможность эксплуатации
Publicly Disclosed
No
Exploited
Yes
Latest Software Release
Exploitation More Likely
Older Software Release
Exploitation More Likely
DOS
N/A
EPSS
Процентиль: 99%
0.89101
Высокий
7 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
github
больше 3 лет назад
Win32k Elevation of Privilege Vulnerability. This CVE ID is unique from CVE-2022-21887.
CVSS3: 7
fstec
больше 3 лет назад
Уязвимость компонента Win32k (Win32k.sys) операционных систем Windows, позволяющая нарушителю повысить свои привилегии
EPSS
Процентиль: 99%
0.89101
Высокий
7 High
CVSS3