Elevation of Privileges in Microsoft Windows Graphics Component
CVE-2016-7259

7.8HIGH

Key Information:

Vendor

Microsoft

Vendor
CVE Published:
20 December 2016

What is CVE-2016-7259?

The Graphics Component in the kernel-mode drivers of Microsoft Windows allows local users to gain elevated privileges by executing a specially crafted application. This vulnerability affects multiple versions of Windows OS including Vista, Server 2008, 7, 8.1, and Windows 10. An attacker could exploit this flaw to execute unauthorized commands and gain unrestricted access to the system. Mitigation is advised through the installation of security updates provided by Microsoft.

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
Low
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.