Описание
Microsoft Windows Search Component Elevation of Privilege Vulnerability
Double free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network.
FAQ
What privileges could be gained by an attacker who successfully exploited this vulnerability?
An attacker who successfully exploited this vulnerability could gain SYSTEM privileges.
Обновления
| Продукт | Статья | Обновление |
|---|---|---|
| Windows Server 2022 | ||
| Windows Server 2022 (Server Core installation) | ||
| Windows 11 Version 23H2 for ARM64-based Systems | ||
| Windows 11 Version 23H2 for x64-based Systems | ||
| Windows 11 Version 24H2 for ARM64-based Systems | ||
| Windows 11 Version 24H2 for x64-based Systems | ||
| Windows Server 2025 | ||
| Windows Server 2025 (Server Core installation) | ||
| Windows 11 Version 25H2 for ARM64-based Systems | ||
| Windows 11 Version 25H2 for x64-based Systems |
Показывать по
10
Возможность эксплуатации
Publicly Disclosed
No
Exploited
No
Latest Software Release
Exploitation Less Likely
EPSS
Процентиль: 51%
0.00704
Низкий
8 High
CVSS3
Связанные уязвимости
CVSS3: 8
nvd
5 дней назад
Double free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network.
CVSS3: 8
github
5 дней назад
Double free in Microsoft Windows Search Component allows an authorized attacker to elevate privileges over a network.
EPSS
Процентиль: 51%
0.00704
Низкий
8 High
CVSS3