vendor:
Windows 7
by:
Anonymous
5.5
CVSS
MEDIUM
Local Privilege Escalation
264
CWE
Product Name: Windows 7
Affected Version From: Windows 7
Affected Version To: Windows 10
Patch Exists: YES
Related CWE: CVE-2020-1464
CPE: o:microsoft:windows_7::-:professional
Other Scripts:
N/A
Platforms Tested: Windows
2020
Windows GDI Local Privilege Escalation Vulnerability
This exploit is a local privilege escalation vulnerability in Windows GDI. It is triggered by calling NtUserMessageCall to set fnid = 0x2A0 on a window, followed by allocating memory to be used for corruption, setting window extra data, creating a switch window #32771, and finally triggering the vulnerability by calling PostMessage.
Mitigation:
Microsoft has released a patch to address this vulnerability.