CVE-2011-4434: Low severity Microsoft Windows Server 2008 vulnerability
Microsoft Windows Server 2008 R2 and R2 SP1 and Windows 7 Gold and SP1 do not properly enforce AppLocker rules, which allows local users to bypass intended access restrictions via a (1) macro or (2) scripting feature in an application, as demonstrated by Microsoft Office applications and the SANDBOXINERT and LOADIGNORECODEAUTHZLEVEL flags.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4434?
CVE-2011-4434 is considered a medium severity vulnerability due to the potential for local users to bypass access restrictions.
How do I fix CVE-2011-4434?
To fix CVE-2011-4434, ensure that you have installed all relevant updates and patches from Microsoft for Windows Server 2008 R2 and Windows 7.
What systems are affected by CVE-2011-4434?
CVE-2011-4434 affects Microsoft Windows Server 2008 R2, Windows Server 2008 R2 SP1, and various versions of Windows 7.
Can CVE-2011-4434 be exploited without user interaction?
Yes, CVE-2011-4434 can be exploited through macros or scripts in applications like Microsoft Office, typically requiring some level of user interaction.
Is CVE-2011-4434 a zero-day vulnerability?
No, CVE-2011-4434 was disclosed in 2011 and has known mitigating factors and fixes available.