VDB
BDU%3A2018-01220
BDU%3A2018-01220
PUBLISHED
CVSS 6.199999809265137 MEDIUM
Уязвимость компонента Win32k операционных систем Windows, позволяющая нарушителю повысить свои привилегии и выполнить произвольный код
Risk Scores
CVSS 2.0
6.199999809265137
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Microsoft Corp | Windows 7 Service Pack 1, Windows Server 2008 Service Pack 2, Windows 8.1, Windows Server 2012, Windows Server 2008 R2 Service Pack 1, Windows RT 8.1, Windows 10, Windows 10 1703, Windows Server 2016, Windows Server 2008 Service Pack 2 (Server Core Installation), Windows Server 2016 (Server Core installation), Windows Server 2008 R2 Service Pack 1 (Server Core installation), Windows 10 1709, Windows Server 1709 (Server Core Installation), Windows 10 1803, Windows Server 1803 (Server Core Installation), Windows 10 1809, Windows Server 2019, Windows Server 2019 (Server Core installation), Windows Server 2012 (Server Core installation) |
Timeline
- Oct 19, 2018 CVE Published
- Feb 18, 2025 CVE Updated
- Mar 18, 2026 Security Advisory
References
- https://securelist.ru/cve-2018-8453-used-in-targeted-attacks/91658/ url
- https://www.kaspersky.ru/blog/vulnerability-in-windows-patched/21510/21510/ url
- https://portal.msrc.microsoft.com/en-US/security-guidance/advisory/CVE-2018-8453 url
- http://packetstormsecurity.com/files/153669/Microsoft-Windows-NtUserSetWindowFNID-Win32k-User-Callback.html url