CVE-2018-8453
An elevation of privilege vulnerability exists in Windows when the Win32k component fails to properly handle objects in memory, aka "Win32k Elevation of Privilege Vulnerability." This affects Windows 7, Windows Server 2012 R2, Windows RT 8.1, Windows Server 2008, Windows Server 2019, Windows Server 2012, Windows 8.1, Windows Server 2016, Windows Server 2008 R2, Windows 10, Windows 10 Servers.
- Affected products
- Win32K, Windows, Windows 10, Windows 10 Servers, Windows 7, Windows 8.1, Windows Rt 8.1, Windows Server 2008
- Microsoft Windows 10 1507
- All versions
- Microsoft Windows 10 1607
- All versions
- Microsoft Windows 10 1703
- All versions
- Microsoft Windows 10 1709
- All versions
- Microsoft Windows 10 1803
- All versions
- Microsoft Windows 10 1809
- All versions
- Fix
- Available
- CVSS 3.1
- 7.8 HIGH
- EPSS
- 70.0% (99th percentile)
- NVD status
- Analyzed
- Published
- 2018-10-10
CVE-2018-8453 at NVD
12 known exploits for CVE-2018-8453
Proof-of-concept code and exploit modules indexed by Sploitus
leHACK-Analysis-of-CVE-2018-8453
cve-2018-8453-exp
cve-2018-8453-exp
windows-kernel-exploits
Exploit for CVE-2018-8453
Microsoft Windows NtUserSetWindowFNID Win32k User Callback Exploit
Microsoft Windows - NtUserSetWindowFNID Win32k User Callback Privilege Escalation (Metasploit)
Microsoft Windows NtUserSetWindowFNID Win32k User Callback
Exploit for CVE-2018-8453
Exploit for CVE-2018-8453
Immunity Canvas: SETWINDOWFNID_LPE
Windows NtUserSetWindowFNID Win32k User Callback