PT-2013-4713 · Microsoft · Windows 7+2

Published

2013-10-09

·

Updated

2020-09-28

·

CVE-2013-3881

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows 7 SP1 Windows Server 2008 R2 SP1
Description The issue allows local users to gain privileges via a crafted application. An elevation of privilege vulnerability exists when the Windows kernel-mode driver improperly handles objects in memory. An attacker who successfully exploited this vulnerability could run arbitrary code in kernel mode, potentially installing programs, viewing, changing, or deleting data, or creating new accounts with full administrative rights.
Recommendations For Windows 7 SP1 and Windows Server 2008 R2 SP1, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2013-3881

Affected Products

Windows
Windows 7
Windows Server 2008 R2