Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-73130
HistoryAug 13, 2020 - 12:00 a.m.

Microsoft Windows and Windows Server Elevation of Privilege Vulnerability (CNVD-2021-73130)

2020-08-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
18
microsoft
windows
server
privilege
vulnerability
kernel api
registry objects
memory
attack

EPSS

0.036

Percentile

91.8%

Microsoft Windows and Microsoft Windows Server are both products of Microsoft Corporation, an operating system for personal devices, and Microsoft Windows Server, a server operating system. An elevation of privilege vulnerability exists in Microsoft Windows and Windows Server. The vulnerability stems from the fact that the Windows Kernel API does not properly handle registry objects in memory, and an attacker could exploit the vulnerability to gain elevated privileges by running a specially crafted application.

EPSS

0.036

Percentile

91.8%