Vulnerability Name: CVE-2016-7292 (CCN-119290) Assigned: 2016-12-13 Published: 2016-12-13 Updated: 2019-05-08 Summary: The Installer in Microsoft Windows Vista SP2, Windows Server 2008 SP2 and R2 SP1, Windows 7 SP1, Windows 8.1, Windows Server 2012 Gold and R2, Windows RT 8.1, Windows 10 Gold, 1511, and 1607, and Windows Server 2016 mishandles library loading, which allows local users to gain privileges via a crafted application, aka "Windows Installer Elevation of Privilege Vulnerability." CVSS v3 Severity: 7.8 High  (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H  )6.8 Medium  (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H/E:U/RL:O/RC:C  )Exploitability Metrics: Attack Vector (AV):  LocalAttack Complexity (AC):  LowPrivileges Required (PR):  LowUser Interaction (UI):  NoneScope: Scope (S):  UnchangedImpact Metrics: Confidentiality (C):  HighIntegrity (I):  HighAvailibility (A):  High
8.8 High  (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H  )7.7 High  (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H/E:U/RL:O/RC:C  )Exploitability Metrics: Attack Vector (AV):  LocalAttack Complexity (AC):  LowPrivileges Required (PR):  LowUser Interaction (UI):  NoneScope: Scope (S):  ChangedImpact Metrics: Confidentiality (C):  HighIntegrity (I):  HighAvailibility (A):  High
CVSS v2 Severity: 7.2 High  (CVSS v2 Vector: AV:L/AC:L/Au:N/C:C/I:C/A:C  )Exploitability Metrics: Access Vector (AV):  LocalAccess Complexity (AC):  LowAuthentication (Au):  NoneImpact Metrics: Confidentiality (C):  CompleteIntegrity (I):  CompleteAvailibility (A):  Complete
6.8 Medium  (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:C/I:C/A:C  )Exploitability Metrics: Access Vector (AV):  LocalAccess Complexity (AC):  LowAthentication (Au):  Single_InstanceImpact Metrics: Confidentiality (C):  CompleteIntegrity (I):  CompleteAvailibility (A):  Complete
Vulnerability Type: CWE-19 Vulnerability Consequences: Gain Privileges References: Source: MITRE Type: CNACVE-2016-7292  Source: CCN Type: Microsoft Security Bulletin MS16-149Security Update for Windows (3205655)  Source: CCN Type: Microsoft Security Bulletin MS17-004Security Update for Local Security Authority Subsystem Service (3216771)  Source: BID Type: Third Party Advisory, VDB Entry94768  Source: CCN Type: BID-94768Microsoft Windows Installer CVE-2016-7292 DLL Loading Local Privilege Escalation Vulnerability  Source: SECTRACK Type: Third Party Advisory, VDB Entry1037450  Source: MS Type: UNKNOWNMS16-149  Source: XF Type: UNKNOWNms-windows-cve20167292-priv-esc(119290)  Vulnerable Configuration: Configuration 1 :cpe:/o:microsoft:windows_10:-:*:*:*:*:*:*:* OR cpe:/o:microsoft:windows_10:1511:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_10:1607:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_7:-:sp1:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_8.1:*:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_rt_8.1:-:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_server_2008:*:sp2:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_server_2012:-:gold:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_server_2012:r2:*:*:*:standard:*:*:*  OR cpe:/o:microsoft:windows_server_2016:-:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_vista:-:sp2:*:*:*:*:*:*  Configuration CCN 1 :cpe:/o:microsoft:windows_vista:*:sp2:*:*:*:*:x64:* OR cpe:/o:microsoft:windows_vista:*:sp2:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_server_2008:*:sp2:*:*:*:*:x32:*  OR cpe:/o:microsoft:windows_server_2008:*:sp2:*:*:*:*:x64:*  OR cpe:/o:microsoft:windows_server_2008:*:sp2:*:*:*:*:itanium:*  OR cpe:/o:microsoft:windows_7:-:sp1:-:*:-:-:x32:*  OR cpe:/o:microsoft:windows_7:*:sp1:*:*:*:*:x64:*  OR cpe:/o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:x64:*  OR cpe:/o:microsoft:windows_server_2008:r2:sp1:*:*:*:*:itanium:*  OR cpe:/o:microsoft:windows_server_2012:*:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_8.1:-:-:-:*:-:-:x32:*  OR cpe:/o:microsoft:windows_8.1:*:*:*:*:*:*:x64:*  OR cpe:/o:microsoft:windows_server_2012:r2:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_rt_8.1:*:*:*:*:*:*:*:*  OR cpe:/o:microsoft:windows_10:-:*:*:*:*:*:x32:*  OR cpe:/o:microsoft:windows_10:*:*:*:*:*:*:x64:*  OR cpe:/o:microsoft:windows_server_2016:*:*:*:*:*:*:*:*    Denotes that component is vulnerable  Oval Definitions Definition ID Class Title Last Modified oval:org.cisecurity:def:1614 V Windows Installer Elevation of Privilege Vulnerability - CVE-2016-7292 (MS16-149) 2017-01-13 
  BACK   
  microsoft  windows 10 -    
microsoft  windows 10 1511    
microsoft  windows 10 1607    
microsoft  windows 7 - sp1    
microsoft  windows 8.1 *    
microsoft  windows rt 8.1 -    
microsoft  windows server 2008 - sp2    
microsoft  windows server 2008 r2 sp1    
microsoft  windows server 2012 - gold    
microsoft  windows server 2012 r2    
microsoft  windows server 2016 -    
microsoft  windows vista - sp2    
microsoft  windows vista * sp2    
microsoft  windows vista * sp2    
microsoft  windows server 2008 sp2    
microsoft  windows server 2008 sp2    
microsoft  windows server 2008 
microsoft  windows 7 - sp1    
microsoft  windows 7 * sp1    
microsoft  windows server 2008 r2    
microsoft  windows server 2008 r2    
microsoft  windows server 2012 
microsoft  windows 8.1 - -    
microsoft  windows 8.1 * 
microsoft  windows server 2012 r2    
microsoft  windows rt 8.1 * 
microsoft  windows 10 - 
microsoft  windows 10 * 
microsoft  windows server 2016