header-logo
Suggest Exploit
vendor:
Windows 8.1 (x64)
by:
Jean-Jamil Khalife
7,2
CVSS
HIGH
Local Privilege Escalation
264
CWE
Product Name: Windows 8.1 (x64)
Affected Version From: Windows 8.1 (x64)
Affected Version To: Windows 8.1 (x64)
Patch Exists: YES
Related CWE: CVE-2015-0057
CPE: o:microsoft:windows_8.1:x64
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: Windows 8.1 (x64)
2015

MS15-010/CVE-2015-0057 win32k Local Privilege Escalation

MS15-010/CVE-2015-0057 is a vulnerability in the win32k component of Windows 8.1 (x64) that allows an attacker to gain elevated privileges on the system. The vulnerability is caused by a race condition in the win32k.sys driver, which can be exploited to execute arbitrary code with elevated privileges.

Mitigation:

Microsoft released a patch for this vulnerability in 2015. Users should ensure that their systems are up to date with the latest security patches.
Source

Exploit-DB raw data:

# Exploit Title: MS15-010/CVE-2015-0057 win32k Local Privilege Escalation
# Date: 2015-12-17
# Exploit Author: Jean-Jamil Khalife
# Software Link: http://www.microsoft.com
# Version: Windows 8.1 (x64)
# Tested on: Windows 8.1 (x64)
# CVE : CVE-2015-0057


Proof of Concept:
https://gitlab.com/exploit-database/exploitdb-bin-sploits/-/raw/main/bin-sploits/39035.zip