Microsoft Windows Kernel contains an exposed IOCTL with insufficient access control vulnerability within the IOCTL (input and output control) dispatcher in appid.sys that allows a local attacker to achieve privilege escalation.
Windows Kernel Remote Code Execution Vulnerability
Windows Kernel Information Disclosure Vulnerability