VDB

CNVD-2024-11164

CNVD-2024-11164 PUBLISHED CVSS 7.800000190734863 HIGH

Microsoft Win32k是美国微软(Microsoft)公司的一个用于Windows多用户管理的系统文件。 Microsoft Win32K存在权限提升漏洞,攻击者可利用该漏洞在系统上获得提升的权限。

Risk Scores

CVSS 3.1
7.800000190734863
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C

Affected Products

VendorProductVersions
MicrosoftWindows Server 2022, 23H2 Edition (Server Core installation)10.0.25398.0
MicrosoftWindows 10 Version 21H210.0.19043.0
microsoftwindows_10_150710.0.10240.0
MicrosoftWindows Server 2012 (Server Core installation)6.2.9200.0
MicrosoftWindows Server 2019 (Server Core installation)10.0.17763.0
microsoftwindows_server_201610.0.14393.0, 10.0.14393.0
microsoftwindows_server_23h210.0.25398.0
MicrosoftWindows Server 2008 Service Pack 2 (Server Core installation)6.0.6003.0
microsoftwindows_11_22H210.0.22621.0
microsoftwindows_10_180910.0.17763.0, 10.0.0
microsoftwindows_server_2008_sp26.0.6003.0, 6.0.6003.0, 6.0.6003.0
microsoftwindows_10_22H210.0.19045.0
MicrosoftWindows 10 Version 22H210.0.19045.0
microsoftwindows_server_2008_R26.1.7601.0, 6.1.7601.0
MicrosoftWindows Server 20126.2.9200.0
MicrosoftWindows Server 2008 Service Pack 26.0.6003.0
microsoftwindows_server_2012_R26.3.9600.0, 6.3.9600.0
MicrosoftWindows Server 2008 R2 Service Pack 16.1.7601.0
microsoftwindows_11_21H210.0.0
MicrosoftWindows Server 201610.0.14393.0

…and 20 more

Exploit Intelligence

Timeline

  • Jan 9, 2024 CVE Published
  • Jan 9, 2024 PoC Published
  • Jan 12, 2024 CVE ID Reserved
  • Jun 14, 2026 Security Advisory

References

Open in Interactive Console →
$ Console Community · 100/wk Open console ›