PT-2017-2472 · Microsoft · Windows

Published

2017-07-11

·

Updated

2019-10-03

·

CVE-2017-8578

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Windows (affected versions not specified)
Description The issue is related to insufficient access control in the Win32k component of the Windows operating system. It allows a remote attacker to potentially elevate their privileges. An elevation-of-privilege vulnerability exists, enabling attackers to impact the system.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Preservation of Permissions

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2017-01682
CVE-2017-8578
ZDI-17-473

Affected Products

Windows