Microsoft Windows是美国微软(Microsoft)公司发布的一系列操作系统。win32k.sys是Windows子系统的内核部分,是一个内核模式设备驱动程序,它包含有窗口管理器、后台控制窗口和屏幕输出管理等。 由于Microsoft Windows内核模式驱动程序(Win32k.sys)没有正确处理内存对象,因此驱动程序中存在一个特权提升漏洞。成功利用此漏洞的攻击者可以获得特权提升,并能读取任意多次内核内存。攻击者随后可安装程序;查看、更改或删除数据;或者创建拥有完全管理权限的新帐户。以下
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
10-question deep dive: root cause, exploitation, mitigation, urgency. Read summary free, full version requires login.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | 翻译文章,CVE-2015-0057漏洞在32位和64位系统上的利用。Exploiting the win32k!xxxEnableWndSBArrows use-after-free (CVE 2015-0057) bug on both 32-bit and 64-bit(Aaron Adams of NCC ) | https://github.com/55-AA/CVE-2015-0057 | POC Details |
| 2 | 翻译文章,CVE-2015-0057漏洞在32位和64位系统上的利用。Exploiting the win32k!xxxEnableWndSBArrows use-after-free (CVE 2015-0057) bug on both 32-bit and 64-bit(Aaron Adams of NCC ) | https://github.com/highandhigh/CVE-2015-0057 | POC Details |
No public POC found.
Login to generate AI POC| CVE-2015-0048 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0065 | Microsoft Word OneTableDocumentStream 远程代码执行漏洞 | |
| CVE-2015-0068 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0067 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0066 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0053 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0052 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0051 | Microsoft Internet Explorer ASLR 安全绕过漏洞 | |
| CVE-2015-0050 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0049 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0054 | Microsoft Internet Explorer 特权提升漏洞 | |
| CVE-2015-0046 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0045 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0044 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0043 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0042 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0041 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0040 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0039 | Microsoft Internet Explorer 内存损坏漏洞 | |
| CVE-2015-0038 | Microsoft Internet Explorer 内存损坏漏洞 |
Showing top 20 of 65 CVEs. View all on vendor page → →
No comments yet