CVE-2011-2005
afd.sys in the Ancillary Function Driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly validate user-mode input passed to kernel mode, which allows local users to gain privileges via a crafted application, aka "Ancillary Function Driver Elevation of Privilege Vulnerability."
- Affected products
- Ancillary Function Driver, Windows
- Microsoft Windows Server 2003
- All versions
- Microsoft Windows Xp
- All versions
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 31.8% (98th percentile)
- NVD status
- Analyzed
- Published
- 2011-10-12
CVE-2011-2005 at NVD
13 known exploits for CVE-2011-2005
Proof-of-concept code and exploit modules indexed by Sploitus
Windows-XP-2003-Afd.sys-Escalation
MS11-080 AfdJoinLeaf Privilege Escalation
Windows Afd.sys - Privilege Escalation Exploit (MS11-080)
Microsoft Windows - 'AfdJoinLeaf' Local Privilege Escalation (MS11-080) (Metasploit)
MS11-080 AfdJoinLeaf Privilege Escalation
MS11-080 AfdJoinLeaf Privilege Escalation
MS11-080 Afd.sys Privilege Escalation Exploit( CVE-2011-2005)
MS11-080 AfdJoinLeaf Privilege Escalation
MS11-080 Afd.sys Privilege Escalation Exploit
Microsoft Windows XP2003 - afd.sys Local Privilege Escalation (MS11-080)
Microsoft Windows XP/2003 - 'afd.sys' Local Privilege Escalation (MS11-080)
MS11-080 Afd.sys Privilege Escalation
Immunity Canvas: MS11_080