VDB

GCVE-110-CERTCC-2010-529673

GCVE-110-CERTCC-2010-529673
Advisory Published
Vulnetix · Advisory published November 24, 2010
Microsoft Windows does not adequately validate registry data read using the function RtlQueryRegistryValues(). By modifying an EUDC registry key value, a local user could execute arbitrary code with SYSTEM privileges.

Risk Scores

certcc-cam
certcc-cam
impact20population17exploitation0widely_known20score_current15.9375ease_of_exploitation10
certcc-vrda
certcc-vrda
d1_impact3d1_population4d1_direct_report0

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›