6.9
CVSSv2

CVE-2018-0982

Published: 14/06/2018 Updated: 03/10/2019
CVSS v2 Base Score: 6.9 | Impact Score: 10 | Exploitability Score: 3.4
CVSS v3 Base Score: 7 | Impact Score: 5.9 | Exploitability Score: 1
VMScore: 696
Vector: AV:L/AC:M/Au:N/C:C/I:C/A:C

Vulnerability Summary

An elevation of privilege vulnerability exists in the way that the Windows Kernel API enforces permissions, aka "Windows Elevation of Privilege Vulnerability." This affects Windows Server 2016, Windows 10, Windows 10 Servers.

Vulnerability Trend

Affected Products

Vendor Product Versions
MicrosoftWindows 101607, 1703, 1709, 1803
MicrosoftWindows Server 2016*, 1709, 1803

Exploits

Windows: Child Process Restriction Mitigation Bypass Platform: Windows 10 1709 (not tested other versions) Class: Security Feature Bypass Summary: It’s possible to bypass the child process restriction mitigation policy by impersonating the anonymous token leading to a security feature bypass Description: Windows 10 has a mitigation policy to ...

Github Repositories

PENTESTING-BIBLE hundreds of ethical hacking & penetration testing & red team & cyber security & computer science resources MORE THAN 1000 LINK MORE TO COME -1- 3 Ways Extract Password Hashes from NTDSdit: wwwhackingarticlesin/3-ways-extract-password-hashes-from-ntds-dit -2- 3 ways to Capture HTTP Password in Network PC: wwwh

PENTESTING-BIBLE hundreds of ethical hacking & penetration testing & red team & cyber security & computer science resources MORE THAN 1000 LINK MORE TO COME -1- 3 Ways Extract Password Hashes from NTDSdit: wwwhackingarticlesin/3-ways-extract-password-hashes-from-ntds-dit -2- 3 ways to Capture HTTP Password in Network PC: wwwh