CVE-2018-0751: High severity Microsoft Windows 10 vulnerability
The Windows Kernel API in Windows 8.1 and RT 8.1, Windows Server 2012 and R2, Windows 10 Gold, 1511, 1607, 1703 and 1709, Windows Server 2016 and Windows Server, version 1709 allows an elevation of privilege vulnerability due to the way the Kernel API enforces permissions, aka "Windows Elevation of Privilege Vulnerability". This CVE ID is unique from CVE-2018-0752.
Affected Software
Event History
Frequently Asked Questions
What level of access does an attacker need to exploit this issue?
An attacker needs local access and low-privileged credentials. The CVSS vector indicates exploitation does not require user interaction and has low attack complexity.
What is the likely impact of successful exploitation?
Successful exploitation can elevate privileges on the affected system. The vulnerability is rated as having high confidentiality and integrity impact, with no availability impact indicated in the supplied CVSS vector.
Which Windows releases are affected?
Affected releases include Windows 8.1 and Windows RT 8.1; Windows Server 2012 and 2012 R2; Windows 10 Gold, 1511, 1607, 1703, and 1709; Windows Server 2016; and Windows Server version 1709.