Описание
Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
FAQ
What privileges could be gained by an attacker who successfully exploited the vulnerability?
A domain user could use this vulnerability to elevate privileges to SYSTEM assigned integrity level.
Обновления
Продукт | Статья | Обновление |
---|---|---|
Windows Server 2008 for 32-bit Systems Service Pack 2 | ||
Windows Server 2008 for x64-based Systems Service Pack 2 | ||
Windows Server 2008 for x64-based Systems Service Pack 2 (Server Core installation) | ||
Windows Server 2008 R2 for x64-based Systems Service Pack 1 (Server Core installation) | ||
Windows Server 2008 R2 for x64-based Systems Service Pack 1 | ||
Windows Server 2008 for 32-bit Systems Service Pack 2 (Server Core installation) | ||
Windows Server 2012 | ||
Windows Server 2012 (Server Core installation) | ||
Windows Server 2012 R2 | ||
Windows Server 2012 R2 (Server Core installation) |
Показывать по
10
Возможность эксплуатации
Publicly Disclosed
No
Exploited
No
Latest Software Release
Exploitation Less Likely
DOS
N/A
EPSS
Процентиль: 29%
0.00102
Низкий
7.8 High
CVSS3
Связанные уязвимости
CVSS3: 7.8
nvd
почти 2 года назад
Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
CVSS3: 7.8
github
почти 2 года назад
Windows Internet Key Exchange (IKE) Extension Elevation of Privilege Vulnerability
CVSS3: 7.8
fstec
почти 2 года назад
Уязвимость реализации протокола IKE (Internet Key Exchange) операционных систем Windows, позволяющая нарушителю повысить свои привилегии
EPSS
Процентиль: 29%
0.00102
Низкий
7.8 High
CVSS3