Windows Kernel-Mode Driver Vulnerability in Microsoft Products
CVE-2010-0485
7.8HIGH
What is CVE-2010-0485?
The affected Microsoft Windows products contain a vulnerability in the win32k.sys kernel-mode drivers, which fail to adequately validate callback parameters during window creation. This oversight permits local users to exploit the flaw, potentially leading to arbitrary code execution on the system. Such vulnerabilities can compromise system integrity and allow malicious actions to be executed without user consent.