CVE-2018-8120
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows Server 2008, Windows 7, Windows Server 2008 R2. This CVE ID is unique from CVE-2018-8124, CVE-2018-8164, CVE-2018-8166.
- Affected products
- Windows
- Microsoft Windows 7
- All versions
- Microsoft Windows Server 2008
- All versions
- CVSS 2.0
- 7.2 HIGH
- CVSS 3.1
- 7.0 HIGH
- EPSS
- 73.7% (99th percentile)
- Weakness
- CWE-404
- NVD status
- Analyzed
- Published
- 2018-05-09
CVE-2018-8120 at NVD
17 known exploits for CVE-2018-8120
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for CVE-2017-0213
Exploit for Improper Resource Shutdown or Release in Microsoft
Exploit for Improper Resource Shutdown or Release in Microsoft
Exploit for CVE-2017-0213
Exploit for Improper Resource Shutdown or Release in Microsoft
Microsoft Windows SetImeInfoEx Win32k NULL Pointer Dereference Exploit
Microsoft Windows - SetImeInfoEx Win32k NULL Pointer Dereference (Metasploit)
Microsoft Windows SetImeInfoEx Win32k NULL Pointer Dereference
Windows SetImeInfoEx Win32k NULL Pointer Dereference
Exploit for CVE-2017-0213
Exploit for Improper Resource Shutdown or Release in Microsoft
Exploit for Improper Resource Shutdown or Release in Microsoft
Microsoft Windows Kernel 'Win32k.sys' Local Privilege Escalation Vulnerability(CVE-2018-8120)
Exploit for Improper Resource Shutdown or Release in Microsoft
Exploit for Improper Resource Shutdown or Release in Microsoft
Exploit for Improper Resource Shutdown or Release in Microsoft
Immunity Canvas: SETIMEINFOEX_LPE