Lucene search

K
cve[email protected]CVE-2012-0178
HistoryMay 09, 2012 - 12:55 a.m.

CVE-2012-0178

2012-05-0900:55:01
CWE-264
web.nvd.nist.gov
33
cve-2012-0178
windows partition manager
race condition
privilege escalation
plug and play configuration manager
vulnerability

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.5%

Race condition in partmgr.sys in Windows Partition Manager in Microsoft Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, and Windows 7 Gold and SP1 allows local users to gain privileges via a crafted application that makes multiple simultaneous Plug and Play (PnP) Configuration Manager function calls, aka โ€œPlug and Play (PnP) Configuration Manager Vulnerability.โ€

Affected configurations

NVD
Node
microsoftwindows_7x64
OR
microsoftwindows_7sp1x64
OR
microsoftwindows_7Match-
OR
microsoftwindows_7Match-sp1x64
OR
microsoftwindows_7Match-sp1x86
OR
microsoftwindows_server_2008sp2itanium
OR
microsoftwindows_server_2008sp2x64
OR
microsoftwindows_server_2008Match-sp2x86
OR
microsoftwindows_server_2008Matchr2x64
OR
microsoftwindows_server_2008Matchr2-itanium
OR
microsoftwindows_vistasp2
OR
microsoftwindows_vistaMatchsp2

7.2 High

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:L/AC:L/Au:N/C:C/I:C/A:C

6.4 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.5%