Privilege escalation vulnerability in CSRSS in Win32 subsystem in Microsoft WindowsID: oval:org.secpod.oval:def:3711 | Date: (C)2012-01-11 (M)2023-12-14 |
Class: VULNERABILITY | Family: windows |
The host is installed with Microsoft Windows XP SP2 and SP3, Server 2003 SP2, Vista SP2, and Server 2008 SP2 and is prone to a privilege escalation vulnerability. A flaw is present in the application, which fails to handle the way that the CSRSS processes a sequence of specially crafted Unicode characters. Successful exploitation allows local users to gain privileges via a crafted application.
Platform: |
Microsoft Windows XP |
Microsoft Windows Vista |
Microsoft Windows Server 2003 |
Microsoft Windows Server 2008 |