7.2

CVE-2013-0008

win32k.sys in the kernel-mode drivers in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 2012, and Windows RT does not properly handle window broadcast messages, which allows local users to gain privileges via a crafted application, aka "Win32k Improper Message Handling Vulnerability."

Data is provided by the National Vulnerability Database (NVD)
MicrosoftWindows Vista Updatesp2
MicrosoftWindows Server 2008 Updatesp2 Editionx64
MicrosoftWindows Server 2008 Updatesp2 Editionx86
MicrosoftWindows Server 2008 Version- Updatesp2 Editionitanium
MicrosoftWindows 7 Editionx64
MicrosoftWindows 7 Editionx86
MicrosoftWindows 7 Updatesp1 Editionx86
MicrosoftWindows 7 Version- Updatesp1 Editionx64
MicrosoftWindows Server 2008 Versionr2 Editionitanium
MicrosoftWindows Server 2008 Versionr2 Editionx64
MicrosoftWindows 8 Version- Update- Editionx64
MicrosoftWindows 8 Version- Update- Editionx86
MicrosoftWindows Rt Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 17.56% 0.948
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.2 3.9 10
AV:L/AC:L/Au:N/C:C/I:C/A:C