Privilege Escalation Vulnerability in Jungo WinDriver Software
CVE-2017-14075
7.8HIGH
What is CVE-2017-14075?
A vulnerability exists in Jungo's WinDriver that allows local attackers to escalate their privileges. This issue arises from improper validation of user-supplied data in the processing of IOCTL 0x953824a7 within the windrvr1240 kernel driver. If an attacker manages to execute low-privileged code on the target system, they can exploit this flaw to perform an out-of-bounds write operation, ultimately gaining the ability to execute arbitrary code with kernel-level permissions.