Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-68736
HistorySep 10, 2020 - 12:00 a.m.

Microsoft Windows/Windows Server Elevation of Privilege Vulnerability (CNVD-2021-68736)

2020-09-1000:00:00
China National Vulnerability Database
www.cnvd.org.cn
14
microsoft corporation
operating system
elevation of privilege
memory handling
ssdp provider
vulnerability
attack
privileges

EPSS

0

Percentile

9.5%

Microsoft Windows and Microsoft Windows Server are both products of Microsoft Corporation (USA), Microsoft Windows is an operating system for personal devices, and Microsoft Windows Server is a server operating system. An elevation of privilege vulnerability exists in Microsoft Windows/Windows Server. The vulnerability stems from a failure of the Windows Function Discovery SSDP provider to properly handle memory, which could be exploited by an attacker to elevate privileges by running a specially crafted application.