PT-2013-4713 · Microsoft · Windows 7+2
Published
2013-10-09
·
Updated
2020-09-28
·
CVE-2013-3881
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Windows 7 SP1
Windows Server 2008 R2 SP1
Description
The issue allows local users to gain privileges via a crafted application. An elevation of privilege vulnerability exists when the Windows kernel-mode driver improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode, potentially installing programs, viewing, changing, or deleting data, or creating new accounts with full administrative rights.
Recommendations
For Windows 7 SP1 and Windows Server 2008 R2 SP1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Windows
Windows 7
Windows Server 2008 R2