| Vulnerability Name: | CVE-2009-2653 | ||||||||
| Assigned: | 2009-08-03 | ||||||||
| Published: | 2009-08-03 | ||||||||
| Updated: | 2019-02-26 | ||||||||
| Summary: | ** DISPUTED ** The NtUserConsoleControl function in win32k.sys in Microsoft Windows XP SP2 and SP3, and Server 2003 before SP1, allows local administrators to bypass unspecified "security software" and gain privileges via a crafted call that triggers an overwrite of an arbitrary memory location. Note: the vendor disputes the significance of this report, stating that 'the Administrator to SYSTEM "escalation" is not a security boundary we defend.' | ||||||||
| CVSS v3 Severity: | 5.9 Medium (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||
| CVSS v2 Severity: | 4.6 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:P/I:P/A:P)
| ||||||||
| Vulnerability Type: | CWE-264 | ||||||||
| Vulnerability Consequences: | ALLOWS_OTHER_ACCESS | ||||||||
| References: | Source: MISC Type: UNKNOWN http://blogs.technet.com/srd/archive/2009/06/11/latest-baidu-public-posting-requires-adminisrator-to-elevate.aspx Source: MITRE Type: CNA CVE-2009-2653 Source: MISC Type: Exploit http://hi.baidu.com/azy0922/blog/item/f950cbc2890729130ef47783.html Source: OSVDB Type: UNKNOWN 56780 Source: SECTRACK Type: UNKNOWN 1022630 Source: EXPLOIT-DB Type: UNKNOWN 9301 Source: MISC Type: Exploit http://www.ntinternals.org/index.html#09_07_30 | ||||||||
| Vulnerable Configuration: | Configuration 1: Denotes that component is vulnerable | ||||||||
| BACK | |||||||||